“Allowed Fast” exploit: is qBittorrent vulnerable to this?

Other platforms, generic questions.
Post Reply
TheMachine

“Allowed Fast” exploit: is qBittorrent vulnerable to this?

Post by TheMachine »

See article: https://torrentfreak.com/attackers-can- ... ds-140819/

libtorrent (which qB uses) is mentioned but it doesn't specify which versions are vulnerable or the affected clients.
sledgehammer_999
Administrator
Administrator
Posts: 2443
Joined: Sun Jan 23, 2011 1:17 pm

Re: “Allowed Fast” exploit: is qBittorrent vulnerable to this?

Post by sledgehammer_999 »

Update: The article was updated to clarify that only older version of Libtorrent were affected. According to the research Transmission currently has the “Allowed Fast” code commented out, but it could become vulnerable when it’s implemented.
So I presume that qBittorrent is ok. Unless you use linux distro that has over one year old libtorrent (I am looking at you old Ubuntu versions with libtorrent 0.15.x series).
User avatar
Nemo
Administrator
Administrator
Posts: 1744
Joined: Sat Jul 24, 2010 6:24 pm

Re: “Allowed Fast” exploit: is qBittorrent vulnerable to this?

Post by Nemo »

I've asked around and they say that the new versions of libtorrent should be safe.

What I sometimes see are ''fake'' Bittorrent 7.8.2 users all below 1-2% where you upload a small amount and get nothing back.

Edit:
Like this for example:
Image
Last edited by Nemo on Wed Aug 20, 2014 2:04 pm, edited 1 time in total.
Post Reply