Candidate: CVE-2015-5685 PublicDate: 2015-08-13 14:59:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5685 Description: The lazy_bdecode function in BitTorrent DHT bootstrap server (bootstrap-dht ) allows remote attackers to execute arbitrary code via a crafted packet, related to "improper indexing." Ubuntu-Description: Notes: Mitigation: Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=797046 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_libtorrent-rasterbar: upstream: https://github.com/arvidn/libtorrent/commit/d9945f6f50a8c967888cd9c2ebe65ffbe462056e upstream_libtorrent-rasterbar: released (1.0.6-1) precise/esm_libtorrent-rasterbar: DNE trusty_libtorrent-rasterbar: ignored (out of standard support) trusty/esm_libtorrent-rasterbar: DNE xenial_libtorrent-rasterbar: not-affected (1.0.7-1build1) bionic_libtorrent-rasterbar: not-affected (1.1.5-1build1) focal_libtorrent-rasterbar: not-affected groovy_libtorrent-rasterbar: not-affected devel_libtorrent-rasterbar: DNE