PT-2007-2825 · Pennmush · Pennmush
Publicado
2007-03-13
·
Atualizado
2011-03-08
·
CVE-2007-1431
CVSS v2.0
7.8
Alta
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
PennMUSH versions 1.8.2 through 1.8.2p3 and 1.8.3 through 1.8.3p1, but not including 1.8.3p1 and 1.8.2p3, can be simplified to:
PennMUSH versions 1.8.2 through 1.8.2p2 and 1.8.3
However, since 1.8.3p1 is the fixed version for 1.8.3 and 1.8.2p3 is the fixed version for 1.8.2, the correct representation is:
PennMUSH versions 1.8.2 through 1.8.2p2 and 1.8.3
Description
The issue allows attackers to cause a denial of service, resulting in a crash, related to the
speak and buy functions.Recommendations
For PennMUSH version 1.8.2, update to version 1.8.2p3.
For PennMUSH version 1.8.3, update to version 1.8.3p1.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Pennmush