Directory traversal vulnerability in torrent.cpp in KTorrent before 2.1.2 allows remote attackers to overwrite arbitrary files via ".." sequences in a torrent filename.
Link | Tags |
---|---|
http://ktorrent.org/forum/viewtopic.php?t=1401 | |
http://www.ubuntu.com/usn/usn-436-1 | vendor advisory |
http://lists.kde.org/?l=kde-announce&m=117346514411140&w=2 | mailing list vendor advisory |
http://secunia.com/advisories/24753 | third party advisory |
http://www.novell.com/linux/security/advisories/2007_007_suse.html | vendor advisory |
http://secunia.com/advisories/24486 | third party advisory |
http://secunia.com/advisories/24995 | third party advisory |
http://secunia.com/advisories/25097 | third party advisory |
http://www.vupen.com/english/advisories/2007/0913 | vdb entry |
http://secunia.com/advisories/24459 | third party advisory |
http://www.securityfocus.com/bid/22930 | vdb entry |
https://launchpad.net/bugs/91174 | |
http://www.securitytracker.com/id?1017747 | vdb entry |
http://security.gentoo.org/glsa/glsa-200705-01.xml | vendor advisory |
http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.401332 | vendor advisory |