Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2014-4909

Disclosure Date: July 29, 2014 (last updated October 05, 2023)
Integer overflow in the tr_bitfieldEnsureNthBitAlloced function in bitfield.c in Transmission before 2.84 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted peer message, which triggers an out-of-bounds write.
0
Attacker Value
Unknown

CVE-2012-6129

Disclosure Date: April 03, 2013 (last updated October 05, 2023)
Stack-based buffer overflow in utp.cpp in libutp, as used in Transmission before 2.74 and possibly other products, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted "micro transport protocol packets."
0
Attacker Value
Unknown

CVE-2012-4037

Disclosure Date: August 15, 2012 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in the web client in Transmission before 2.61 allow remote attackers to inject arbitrary web script or HTML via the (1) comment, (2) created by, or (3) name field in a torrent file.
0
Attacker Value
Unknown

CVE-2010-0012

Disclosure Date: January 08, 2010 (last updated January 27, 2024)
Directory traversal vulnerability in libtransmission/metainfo.c in Transmission 1.22, 1.34, 1.75, and 1.76 allows remote attackers to overwrite arbitrary files via a .. (dot dot) in a pathname within a .torrent file.