Denial of service (DoS) vulnerability in Nicotine+ 3.0.3 and later allows a user with a modified Soulseek client to crash Nicotine+ by sending a file download request with a file path containing a null character.
| Software | From | Fixed in |
|---|---|---|
| nicotine-plus / nicotine+ | 3.0.3 | 3.2.1 |
| fedoraproject / fedora | 34 | 34.x |
nicotine-plus
|
3.0.3 | 3.2.1 |