<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>TorrentFreak &#187; vulnerability</title>
	<atom:link href="http://torrentfreak.com/tag/vulnerability/feed/" rel="self" type="application/rss+xml" />
	<link>http://torrentfreak.com</link>
	<description>Torrent News, Torrent Sites and the latest Scoops</description>
	<lastBuildDate>Fri, 25 May 2012 20:55:29 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
		<item>
		<title>Critical Vulnerability Discovered in uTorrent</title>
		<link>http://torrentfreak.com/critical-vulnerability-discovered-in-utorrent-080812/</link>
		<comments>http://torrentfreak.com/critical-vulnerability-discovered-in-utorrent-080812/#comments</comments>
		<pubDate>Tue, 12 Aug 2008 10:59:56 +0000</pubDate>
		<dc:creator>enigmax</dc:creator>
				<category><![CDATA[Bittorrent Software]]></category>
		<category><![CDATA[Hot Off The Press]]></category>
		<category><![CDATA[bittorrent]]></category>
		<category><![CDATA[Secunia]]></category>
		<category><![CDATA[utorrent]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://torrentfreak.com/?p=3719</guid>
		<description><![CDATA[A vulnerability described as 'critical' has been discovered in versions of uTorrent and the official BitTorrent client. The 'buffer overflow' vulnerability can be exploited to compromise a user's computer for the execution of arbitrary code. It is suggested that users should immediately update to uTorrent version 1.8 RC7 or higher. There is currently no fix for the official client.<p>Source: <a href="http://torrentfreak.com/critical-vulnerability-discovered-in-utorrent-080812/">Critical Vulnerability Discovered in uTorrent</a></p>
]]></description>
			<content:encoded><![CDATA[<p><img src="http://torrentfreak.com//images/utorrent_logo.png" align="right" alt="utorrent" />Secunia has issued two urgent security alerts, one for <a href="http://secunia.com/advisories/31441/">uTorrent</a> and the other for the mainline <a href="http://secunia.com/advisories/31445/">BitTorrent client</a>. Both clients are being developed by BitTorrent Inc. </p>
<p>The vulnerability was found in uTorrent and can be maliciously exploited to compromise a user&#8217;s computer, however, it also affects the mainline BitTorrent client, since it&#8217;s based on the uTorrent code.</p>
<p>According to Secunia, &#8220;the vulnerability is caused due to a boundary error in the processing of .torrent files. This can be exploited to cause a stack-based buffer overflow by tricking the user into opening a .torrent file containing an overly long &#8216;created by&#8217; field&#8221;.</p>
<p>A successful execution of the exploit would allow the attacker to run arbitrary code on the victim&#8217;s machine.</p>
<p>The vulnerability exists in uTorrent version 1.7.7 (Build 8179) and may well affect earlier versions too, although this isn&#8217;t yet confirmed. The flaw is also present in the official BitTorrent client, versions 6.xx.</p>
<p>The solution for uTorrent users is to immediately upgrade to <a href="http://torrentfreak.com/utorrent-18-released-mac-version-coming-soon-080810/">version 1.8</a>. Currently there is no solution for those using the mainline client. However, an update will be available soon, TorrentFreak was told. For now, caution is advised when using unverified torrents.</p>
<p>Source: <a href="http://torrentfreak.com/critical-vulnerability-discovered-in-utorrent-080812/">Critical Vulnerability Discovered in uTorrent</a></p>
]]></content:encoded>
			<wfw:commentRss>http://torrentfreak.com/critical-vulnerability-discovered-in-utorrent-080812/feed/</wfw:commentRss>
		<slash:comments>82</slash:comments>
		</item>
		<item>
		<title>VLC Player Vulnerable to Remote Hijack</title>
		<link>http://torrentfreak.com/vlc-player-vulnerable-remote-hijack-080318/</link>
		<comments>http://torrentfreak.com/vlc-player-vulnerable-remote-hijack-080318/#comments</comments>
		<pubDate>Tue, 18 Mar 2008 21:29:23 +0000</pubDate>
		<dc:creator>Ernesto</dc:creator>
				<category><![CDATA[DRM and Other Evil]]></category>
		<category><![CDATA[Hot Off The Press]]></category>
		<category><![CDATA[remote exploit]]></category>
		<category><![CDATA[vlc]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://torrentfreak.com/vlc-player-vulnerable-remote-hijack-080318/</guid>
		<description><![CDATA[VLC Player, one of the best and most widely used media players has found to be vulnerable to a remote hijack. The reported vulnerability makes it possible for a malicious user to run arbitrary code, potentially taking remote control of the host machine.<p>Source: <a href="http://torrentfreak.com/vlc-player-vulnerable-remote-hijack-080318/">VLC Player Vulnerable to Remote Hijack</a></p>
]]></description>
			<content:encoded><![CDATA[<p><img src="http://torrentfreak.com//images/vlc.jpg" align="right"  alt="vlc media player" /><a href="http://www.videolan.org/vlc/">VLC</a> is a popular media player among BitTorrent users. Not just for the fact that it is free, also because it includes a huge number of the video codecs, so it can play virtually every video file available. </p>
<p>Unfortunately, the latest versions of VLC have a security flaw according to a <a href="http://secunia.com/advisories/28233/">report</a> from Luigi Auriemma. The vulnerability can be exploited to compromise a user&#8217;s system, as it leaves it wide open for a malicious user to run arbitrary code.</p>
<p>The problem occurs when a someone loads a subtitle file, which causes a buffer overflow that can be exploited. The security flaw is platform independent, which means it affects Windows, Mac and Linux users.</p>
<p>Initially it was reported that the flaws in version 0.8.6d were fixed in the latest release, but this turns out not to be the case. Auriemma <a href="http://securityvulns.com/Tdocument429.html">writes</a>: &#8220;The old buffer-overflow in the subtitles handled by VLC has not been fully patched in version 0.8.6e.&#8221;</p>
<p>&#8220;The funny thing is that my old proof-of-concept was built just to test this specific buffer-overflow and in fact it works on the new VLC version too without modifications,&#8221; he adds.</p>
<p>For now, the only solutions are not to run any subtitle files, or to grab one of the <a href="http://nightlies.videolan.org/">nightly builds</a>. The downside is, however, that these might not be as stable as the regular releases.</p>
<p>Source: <a href="http://torrentfreak.com/vlc-player-vulnerable-remote-hijack-080318/">VLC Player Vulnerable to Remote Hijack</a></p>
]]></content:encoded>
			<wfw:commentRss>http://torrentfreak.com/vlc-player-vulnerable-remote-hijack-080318/feed/</wfw:commentRss>
		<slash:comments>122</slash:comments>
		</item>
		<item>
		<title>uTorrent and Official BitTorrent Client Vulnerable to Remote DOS Attack</title>
		<link>http://torrentfreak.com/bittorrent-clients-vulnerable-to-remote-dos-attack-080117/</link>
		<comments>http://torrentfreak.com/bittorrent-clients-vulnerable-to-remote-dos-attack-080117/#comments</comments>
		<pubDate>Thu, 17 Jan 2008 11:49:25 +0000</pubDate>
		<dc:creator>enigmax</dc:creator>
				<category><![CDATA[Bittorrent Software]]></category>
		<category><![CDATA[Hot Off The Press]]></category>
		<category><![CDATA[bittorrent]]></category>
		<category><![CDATA[Luigi Auriemma]]></category>
		<category><![CDATA[utorrent]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://torrentfreak.com/bittorrent-clients-vulnerable-to-remote-dos-attack-080117/</guid>
		<description><![CDATA[Both the official BitTorrent and uTorrent clients are vulnerable to a remote denial-of-service attack, due to the way they handle user-supplied data. Versions found to be vulnerable so far are the official BitTorrent 6.0 client,
uTorrent 1.7.x, uTorrent 1.6.x and uTorrent 1.8-alpha-7834.<p>Source: <a href="http://torrentfreak.com/bittorrent-clients-vulnerable-to-remote-dos-attack-080117/">uTorrent and Official BitTorrent Client Vulnerable to Remote DOS Attack</a></p>
]]></description>
			<content:encoded><![CDATA[<p>Security vulnerabilities in BitTorrent clients are relatively rare, although not unheard of. Luigi Auriemma, a Milan-based security expert, claims to have found a vulnerability in various BitTorrent clients based on the way they handle user-supplied data. The flaw allows an attacker to crash the application, effectively denying service to legitimate users. Code execution is not possible, which means there is little reason for users to panic.</p>
<p>So far, the problem appears to affect these clients:</p>
<p> &#8211; BitTorrent 6.0 (build 5535)<br />
 &#8211; uTorrent 1.7.5 (build 4602)<br />
 &#8211; uTorrent 1.8 (alpha 7834)</p>
<p>Luigi is reporting that earlier versions of these clients may also be vulnerable and this appears to have been confirmed by the uTorrent team. The problems are confirmed to exist on Windows versions of the software. As yet, Mac and Linux versions of the official BitTorrent client have not been tested.</p>
<p>The bug in detail (from Luigi&#8217;s <a href="http://aluigi.altervista.org/adv/ruttorrent-adv.txt">site</a>):</p>
<blockquote><p>
By default both the clients have the &#8220;Detailed Info&#8221; window active with the &#8220;General&#8221; section visible in it where are reported various informations about the status of the torrent and the trackers in use.</p>
<p>In this same window near &#8220;General&#8221; there is also the &#8220;Peers&#8221; section which is very useful since it showes many informations about the other connected clients like the percentage of availability of the shared torrent, their IP address, country, speed and amount of downloaded and uploaded data and moreover the version of their client (like &#8220;BitTorrent 6.0&#8243;, &#8220;Azureus 3.0.3.4&#8243;, &#8220;uTorrent 1.7.5&#8243;, &#8220;KTorrent 2.2.4&#8243; and so on).</p>
<p>When this window is visualized by the user the unicode strings with the software versions of the connected clients are copied in the relative static buffers used for the visualization in the GUI through the wcscpy function.</p>
<p>If this string is too long a crash will occur immediately or in some cases (like on BitTorrent) could happen later or when the user watches the status of another torrent or leaves the &#8220;Peers&#8221; window. Code execution is not possible.</p>
<p>For exploiting the problem is enough that an external attacker connects to the random port opened on the client and sends the long client version and the SHA1 hash of the torrent currently in use and watched<br />
on the target. Note that all these parameters (client IP, port and torrent&#8217;s hash) are<br />
publicly available on the tracker.</p></blockquote>
<p>The uTorrent team state the flaw affects all older uTorrent versions 1.6 and 1.7.x. too but have been quick to respond, releasing a new build  &#8211; uTorrent 1.7.6 (build 7859) which has fixed the issue.</p>
<p>It can be downloaded <a href="http://download.utorrent.com/1.7.6/utorrent.exe">here</a>.</p>
<p>Source: <a href="http://torrentfreak.com/bittorrent-clients-vulnerable-to-remote-dos-attack-080117/">uTorrent and Official BitTorrent Client Vulnerable to Remote DOS Attack</a></p>
]]></content:encoded>
			<wfw:commentRss>http://torrentfreak.com/bittorrent-clients-vulnerable-to-remote-dos-attack-080117/feed/</wfw:commentRss>
		<slash:comments>122</slash:comments>
		</item>
		<item>
		<title>Critical BitTorrent Vulnerability Found in Opera Browser</title>
		<link>http://torrentfreak.com/critical-bittorrent-vulnerability-found-in-opera-browser/</link>
		<comments>http://torrentfreak.com/critical-bittorrent-vulnerability-found-in-opera-browser/#comments</comments>
		<pubDate>Fri, 20 Jul 2007 09:04:03 +0000</pubDate>
		<dc:creator>enigmax</dc:creator>
				<category><![CDATA[Bittorrent Software]]></category>
		<category><![CDATA[bittorrent]]></category>
		<category><![CDATA[opera]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://torrentfreak.com/critical-bittorrent-vulnerability-found-in-opera-browser/</guid>
		<description><![CDATA[The cross platform browser Opera has been discovered to contain another critical vulnerability affecting its BitTorrent engine, one which leaves it wide open for a malicious user to run arbitrary code, potentially taking remote control of the host machine.<p>Source: <a href="http://torrentfreak.com/critical-bittorrent-vulnerability-found-in-opera-browser/">Critical BitTorrent Vulnerability Found in Opera Browser</a></p>
]]></description>
			<content:encoded><![CDATA[<p><img src="http://torrentfreak.com//images/opera.jpg" align="right" alt="Opera" /></p>
<p>According to Danish computer security outfit Secunia, a vulnerability has been <a href="http://secunia.com/advisories/26138/">discovered</a> in Opera v9.21 on the Windows platform, which can be exploited to compromise a user&#8217;s system, potentially taking remote control of the machine.</p>
<p>The advisory states that the vulnerability is created by Opera&#8217;s utilization of already freed memory when parsing BitTorrent headers. This flaw can then be exploited to run code on the host machine when a user is tricked into clicking a specially created .torrent file. When the file does not transfer, the user naturally deletes the .torrent file with a right click, an action which triggers the exploit.</p>
<p>At the moment, Windows version 9.21 is reported as being vulnerable although previous versions may also be affected.</p>
<p>Secunia offers a <a href="http://secunia.com/software_inspector/">software tool</a> which which enables users to see if they are affected by the vulnerability.</p>
<p>Any affected users can overcome the problems by <a href="http://www.opera.com/docs/changelogs/windows/922/">upgrading</a> to version 9.22. Opera is no stranger to vulnerabilities in its BitTorrent engine, as <a href="http://torrentfreak.com/bittorrent-exploit-vulnerability-discovered-in-latest-opera/">reported</a> by us back in May.</p>
<p>Source: <a href="http://torrentfreak.com/critical-bittorrent-vulnerability-found-in-opera-browser/">Critical BitTorrent Vulnerability Found in Opera Browser</a></p>
]]></content:encoded>
			<wfw:commentRss>http://torrentfreak.com/critical-bittorrent-vulnerability-found-in-opera-browser/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>

