Unrated severityNVD Advisory· Published Oct 3, 2008· Updated Apr 23, 2026
CVE-2008-4434
CVE-2008-4434
Description
Stack-based buffer overflow in (1) uTorrent 1.7.7 build 8179 and earlier and (2) BitTorrent 6.0.3 build 8642 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long Created By field in a .torrent file.
Affected products
89cpe:2.3:a:bittorrent:bittorrent:*:*:*:*:*:*:*:*+ 66 more
- cpe:2.3:a:bittorrent:bittorrent:*:*:*:*:*:*:*:*range: <=6.0.3
- cpe:2.3:a:bittorrent:bittorrent:3.9.1:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.0.3:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.0.4:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.1.2:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.1.3:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.1.4:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.1.5:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.1.6:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.1.7:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.1.8:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.20.0:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.20.1:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.20.2:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.20.3:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.20.4:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.20.6:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.20.7:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.20.8:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.20.9:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.2.2:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.22.0:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.22.1:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.22.4:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.24.0:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.24.2:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.26.0:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.27.1:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.27.2:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.3.0:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.3.1:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.3.2:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.3.3:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.3.4:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.3.5:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.3.6:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.4.0:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.4.1:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.9.2:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.9.3:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.9.4:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.9.5:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.9.6:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.9.7:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.9.8:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:4.9.9:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:5.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:5.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:5.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:5.0.3:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:5.0.4:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:5.0.5:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:5.0.6:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:5.0.7:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:5.0.8:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:5.0.9:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:5.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:6.0:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:6.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:bittorrent:bittorrent:6.0.2:*:*:*:*:*:*:*
cpe:2.3:a:utorrent:utorrent:*:*:*:*:*:*:*:*+ 21 more
- cpe:2.3:a:utorrent:utorrent:*:*:*:*:*:*:*:*range: <=1.7.7
- cpe:2.3:a:utorrent:utorrent:1.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.1.3:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.1.4:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.1.5:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.1.6:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.1.7:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.2:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.2.2:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.3:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.4:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.4.2:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.5:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.6:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.7:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.7.1:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.7.2:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.7.3:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.7.4:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.7.5:*:*:*:*:*:*:*
- cpe:2.3:a:utorrent:utorrent:1.7.6:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
10- secunia.com/advisories/31441nvdVendor Advisory
- secunia.com/advisories/31445nvdVendor Advisory
- forum.utorrent.com/viewtopic.phpnvd
- lists.immunitysec.com/pipermail/dailydave/attachments/20080811/35d6194b/attachment-0001.pdfnvd
- seclists.org/dailydave/2008/q3/0155.htmlnvd
- www.securityfocus.com/bid/30653nvd
- www.securitytracker.com/idnvd
- www.vupen.com/english/advisories/2008/2340nvd
- www.vupen.com/english/advisories/2008/2341nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/44404nvd
News mentions
0No linked articles in our index yet.