mirror of
https://github.com/transmission/transmission
synced 2025-02-25 23:42:30 +00:00
No description
Tracker error messages are inadequately output encoded when rendered by the tracker information page inside the WebUI, allowing a malicious tracker to inject an XSS payload into the page. Esploiting this issue allows an attacker to supply arbitrary client-side code that will ultimately be rendered and executed within the end user's web browser. Found by Rory McNamara (Gotham Digital Science). CVE pending. |
||
---|---|---|
.tx | ||
cli | ||
cmake | ||
daemon | ||
extras | ||
gtk | ||
libtransmission | ||
m4 | ||
macosx | ||
po | ||
qt | ||
third-party | ||
Transmission.xcodeproj | ||
utils | ||
web | ||
.gitignore | ||
.gitmodules | ||
AUTHORS | ||
autogen.sh | ||
ChangeLog | ||
CMakeLists.txt | ||
configure.ac | ||
COPYING | ||
Makefile.am | ||
NEWS | ||
README | ||
transmission-gtk.spec.in | ||
uncrustify.cfg | ||
update-version-h.sh |
ABOUT Transmission is a fast, easy, and free BitTorrent client. It comes in several flavors: * A native Mac OS X GUI application * GTK+ and Qt GUI applications for Linux, BSD, etc. * A headless daemon for servers and routers * A web UI for remote controlling any of the above Visit https://transmissionbt.com/ for more information. BUILDING Transmission has an Xcode project file (Transmission.xcodeproj) for building in Xcode. For a more detailed description, and dependancies, visit: https://github.com/transmission/transmission/wiki Building a Transmission release from the command line: $ xz -d -c transmission-2.11.tar.xz | tar xf - $ cd transmission-2.11 $ ./configure $ make $ sudo make install Building Transmission from the nightly builds: Download a tarball from https://build.transmissionbt.com/job/trunk-linux-inc/ and follow the steps from the previous section. If you're new to building programs from source code, this is typically easier than building from SVN. Building Transmission from SVN (First Time): $ svn co svn://svn.transmissionbt.com/Transmission/trunk Transmission $ cd Transmission $ ./autogen.sh $ make $ sudo make install Building Transmission from SVN (Updating): $ cd Transmission $ make clean $ svn up $ ./update-version-h.sh $ make $ sudo make install Notes for building on Solaris' C compiler: User av reports success with this invocation: ./configure CC=c99 CXX=CC CFLAGS='-D__EXTENSIONS__ -mt'