Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 26 FEDORA-2017-b2f4db4def Critical: qbittorrent Heap Overflow

fedora
Calendar Grey December 3, 2017
Dist Fedora Esm H88
Fedora releases qbittorrent patch fixing severe buffer overflow vulnerability in libtorrent. Detailed guidance provided.
Update to latest releases

Summary

A Bittorrent client using rb_libtorrent and a Qt4 Graphical User Interface.

It aims to be as fast as possible and to provide multi-OS, unicode support.

Update to latest releases

[ 1 ] Bug #1516073 - qbittorrent-4.0.1 is available

https://bugzilla.redhat.com/show_bug.cgi?id=1516073

[ 2 ] Bug #1466432 - CVE-2017-9847 rb_libtorrent: Heap-buffer overflow in bdecode function [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=1466432

[ 3 ] Bug #1438986 - rb_libtorrent-1.1.5 is available

https://bugzilla.redhat.com/show_bug.cgi?id=1438986

su -c 'dnf upgrade qbittorrent' at the command line.

For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 26
Version: 4.0.1
Release: 1.fc26
Summary: A Bittorrent Client

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here