Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Fedora 9: 2008-9167 Critical: Ktorrent Webinterface Security Problems

fedora
Calendar Grey October 24, 2008
Dist Fedora Esm H88
The latest ktorrent update in Fedora 9 addresses stability problems, excessive CPU usage, and vulnerabilities within the web interface.
Another bugfix release for the 3.1 series is out

Summary

KTorrent is a BitTorrent program for KDE. Its main features are native KDE

integration, download of torrent files, upload speed capping, internet

searching using various search engines, UDP Trackers and UPnP support.

Another bugfix release for the 3.1 series is out. This fixes several bugs : * A

crash caused by a SIGBUS, when diskspace preallocation is disabled * High CPU

usage when DNS lookups fail in the UDP tracker code * Several security issues

in the webinterface plugin

* Thu Oct 23 2008 Rex Dieter - 3.1.4-1

- ktorrent-3.1.4

* Tue Oct 14 2008 Rex Dieter - 3.1.3-4

- KDEDInit could not launch .../ktorrent (#451559, kde#157853)

* Mon Oct 13 2008 Roland Wolters - 3.1.3-3

- Update to upstream version 3.1.3

* Fri Aug 8 2008 Rex Dieter - 3.1.2-1

- ktorrent-3.1.2

* Sun Jul 13 2008 Roland Wolters - 3.1-5

- Update to version 3.1

* Wed May 14 2008 Roland Wolters - 3.0.2-3

- bugfix update to version 3.0.2

- some spec file fixes due to an update error

* Mon Apr 28 2008 Rex Dieter - 3.0.1-4

- %postun: remove extraneous scriplets

- -devel: own %{_kde4_includedir}/libbtcore/ (and subdirs)

- -devel: Requires: kdelibs4-devel

- drop: Requires: oxygen-icon-theme (kde4 runtime already does)

- Requires(post,postun): xdg-utils

[ 1 ] Bug #451559 - KDEInit could not launch /usr/bin/ktorrent

https://bugzilla.redhat.com/show_bug.cgi?id=451559

[ 2 ] Bug #468233 - ktorrent not up to date

https://bugzilla.redhat.com/show_bug.cgi?id=468233

su -c 'yum update ktorrent' at the command line.

For more information, refer to "Managing Software with yum",

available at .

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

Fedora-package-announce mailing list

Fedora-package-announce@redhat.com

https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 9
Version: 3.1.4
Release: 1.fc9
URL: Summary : A BitTorrent program for KDE

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here