CVE-2014-8509

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
31/10/2014
Last modified:
12/04/2025

Description

The lazy_bdecode function in BitTorrent bootstrap-dht (aka Bootstrap) allows remote attackers to execute arbitrary code via a crafted packet, which triggers an out-of-bounds read, related to "Improper Indexing."

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:bittorrent:bootstrap-dht:-:*:*:*:*:*:*:*