FS#15325 - [libtorrent-rasterbar] arbitrary file overwrite vulnerability

Attached to Project: Arch Linux
Opened by serph (serph) - Tuesday, 30 June 2009, 19:01 GMT
Last edited by Hugo Doria (hdoria) - Saturday, 04 July 2009, 23:41 GMT
Task Type Bug Report
Category Security
Status Closed
Assigned To Hugo Doria (hdoria)
Architecture All
Severity High
Priority Normal
Reported Version
Due in Version Undecided
Due Date Undecided
Percent Complete 100%
Votes 1
Private No

Details

Description:

Versions older than 0.14.4 are vulnerable:
http://census-labs.com/news/2009/06/08/libtorrent-rasterbar/


Additional info:

libtorrent-rasterbar < 0.14.4 affected
There also doesn't seem to be a maintainer for the package
This task depends upon

Closed by  Hugo Doria (hdoria)
Saturday, 04 July 2009, 23:41 GMT
Reason for closing:  Fixed
Additional comments about closing:  Fixed on libtorrent-rasterbar 0.14.4-1
Comment by serph (serph) - Wednesday, 01 July 2009, 02:53 GMT
Updated PKGBUILD attached.

Compiled fine on x86_64
   PKGBUILD (1.2 KiB)

Loading...