Vulnerability Description
The Util_DecodeHTTPAuth function in BNBT BitTorrent Tracker Beta 7.5 Release 2 and earlier allows remote attackers to cause a denial of service (crash) via a Basic Authorization HTTP request with a "A==" value.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Trevor Hogan | Bnbt | 7.5_beta_release2 |
References
- http://bnbt.go-dedicated.com/
- http://fux0r.phathookups.com/advisory/sp-x12-advisory.txtExploitVendor Advisory
- http://marc.info/?l=bugtraq&m=108526361421535&w=2
- http://secunia.com/advisories/11684PatchVendor Advisory
- http://securitytracker.com/id?1010254
- http://www.osvdb.org/6336
- http://www.securityfocus.com/bid/10399ExploitPatchVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16228
- http://bnbt.go-dedicated.com/
- http://fux0r.phathookups.com/advisory/sp-x12-advisory.txtExploitVendor Advisory
- http://marc.info/?l=bugtraq&m=108526361421535&w=2
- http://secunia.com/advisories/11684PatchVendor Advisory
- http://securitytracker.com/id?1010254
- http://www.osvdb.org/6336
- http://www.securityfocus.com/bid/10399ExploitPatchVendor Advisory
FAQ
What is CVE-2004-2029?
CVE-2004-2029 is a vulnerability with a CVSS score of 5.0 (MEDIUM). The Util_DecodeHTTPAuth function in BNBT BitTorrent Tracker Beta 7.5 Release 2 and earlier allows remote attackers to cause a denial of service (crash) via a Basic Authorization HTTP request with a "A...
How severe is CVE-2004-2029?
CVE-2004-2029 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2004-2029?
Check the references section above for vendor advisories and patch information. Affected products include: Trevor Hogan Bnbt.