[Full-disclosure] utorrent issue?

Gadi Evron ge at linuxbox.org
Fri Feb 16 02:43:34 GMT 2007


Hi, this did not hit bugtraq yet for some reason and it is serious. In AV
circles we are all worried about the abuse potential for this in malware.

uTorrent 1.6 build 474 (announce) Key Remote Heap Overflow Exploit
http://milw0rm.com/exploits/3296

Further Burak CIFTER wrote on this concern, comparing the utorrent
vulnerability to the SunOS one and how our security perceptions change:
http://blogs.securiteam.com/index.php/archives/825




Full-Disclosure is hosted and sponsored by Secunia.