PT-2003-2376 · Epic Games · Unreal Engine
Published
2003-12-31
·
Updated
2017-07-29
·
CVE-2003-1431
CVSS v2.0
7.1
High
| Vector | AV:N/AC:M/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Unreal Engine versions 226f through 436
Description
The issue is a buffer overflow that allows remote attackers to cause a denial of service, resulting in a crash, by providing a long host string in the Unreal URL.
Recommendations
For versions 226f through 436, consider restricting the length of host strings in the Unreal URL to prevent the buffer overflow until a fix is available.
Exploit
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Unreal Engine