Alerts This Week
Warning Icon 1 758
Alerts This Week
Warning Icon 1 758

Mageia: 2020-0235 Critical: Transmission Denial of Service Fix

mageia
Calendar Grey May 27, 2020
Dist Mageia Esm H88
Revised network modules address a memory leak concern, safeguarding against Denial of Service attacks and possible exploitation of remote execution vulnerabilities.
Updated transmission packages fix security vulnerability: Use-after-free in libtransmission/variant.c in Transmission before 3.00 allows remote attackers to cause a denial of serv...

Summary

Updated transmission packages fix security vulnerability:
Use-after-free in libtransmission/variant.c in Transmission before 3.00 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted torrent file (CVE-2018-10756).

References

- https://bugs.mageia.org/show_bug.cgi?id=26656

- https://github.com/transmission/transmission/commit/2123adf8e5e1c2b48791f9d22fc8c747e974180e

- https://www.cve.org/CVERecord?id=CVE-2018-10756

Resolution

SRPMS

- 7/core/transmission-2.94-4.1.mga7

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 27 May 2020
URL: https://advisories.mageia.org/MGASA-2020-0235.html
Type: security
CVE: CVE-2018-10756

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here