Openarena Team · Openarena · CVE-2010-5077
**Name of the Vulnerable Software and Affected Versions**
ioquake3 versions prior to r1762
OpenArena (affected versions not specified)
Tremulous (affected versions not specified)
**Description**
The issue allows remote attackers to cause a denial of service, specifically network traffic amplification, by sending spoofed requests. This can be achieved through either a getstatus or rcon request.
**Recommendations**
For ioquake3 versions prior to r1762, update to version r1762 or later.
For OpenArena, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
For Tremulous, at the moment, there is no information about a newer version that contains a fix for this vulnerability.