Deluge 1.3.15 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the URL field. Attackers can paste a buffer of 5000 characters into the 'From URL' field during torrent addition to trigger an application crash.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sun, 22 Mar 2026 00:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Deluge 1.3.15 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the URL field. Attackers can paste a buffer of 5000 characters into the 'From URL' field during torrent addition to trigger an application crash. | |
| Title | Deluge 1.3.15 Denial of Service via URL Field | |
| First Time appeared |
Deluge-torrent
Deluge-torrent deluge |
|
| Weaknesses | CWE-466 | |
| CPEs | cpe:2.3:a:deluge-torrent:deluge:1.3.15:*:*:*:*:*:*:* | |
| Vendors & Products |
Deluge-torrent
Deluge-torrent deluge |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-03-22T00:15:29.483Z
Reserved: 2026-03-21T16:46:03.499Z
Link: CVE-2019-25586
No data.
Status : Received
Published: 2026-03-22T01:16:56.697
Modified: 2026-03-22T01:16:56.697
Link: CVE-2019-25586
No data.
OpenCVE Enrichment
No data.
Weaknesses