Releases22
Frequency5 months 5 days
Last Release
## Transmission Torrent Client Transmission is a cross-platform BitTorrent client that is open source, easy, powerful, and lean. * Uses fewer resources than other clients * Native Mac, GTK+ and Qt GUI clients * Daemon ideal for servers, embedded systems, and headless use * All these can be remote controlled by Web and Terminal clients * Local Peer Discovery * Full encryption, DHT, µTP, PEX and Magnet Link support ### Package-specific issue If this package isn't up-to-date for some days, [Create an issue](https://github.com/tunisiano187/Chocolatey-packages/issues/new/choose) Support the package maintainer and [![Patreon](https://cdn.jsdelivr.net/gh/tunisiano187/Chocolatey-packages@d15c4e19c709e7148588d4523ffc6dd3cd3c7e5e/icons/patreon.png)](https://www.patreon.com/bePatron?u=39585820)

CVE History

CVEAffectedPublishedCVSS v3CVSS v2
< 3.007.8 HIGH6.8 MEDIUM

Use-after-free in libtransmission/variant.c in Transmission before 3.00 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted torrent file.

< 1.929.8 CRITICAL7.5 HIGH

Transmission before 1.92 allows an attacker to cause a denial of service (crash) or possibly have other unspecified impact via a large number of tr arguments in a magnet link.

< 1.925.3 MEDIUM5 MEDIUM

Transmission before 1.92 allows attackers to prevent download of a file by corrupted data during the endgame.

<= 2.926.8 MEDIUM

Transmission through 2.92 relies on X-Transmission-Session-Id (which is not a forbidden header for Fetch) for access control, which allows remote attackers to execute arbitrary RPC commands, and consequently write to arbitrary files, via POST requests to /transmission/rpc in conjunction with a DNS rebinding attack.