PT-2004-1804 · Valve · Half-Life Engine

Soul Beaver

+1

·

Published

2004-07-23

·

Updated

2017-07-11

·

CVE-2004-0724

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Half-Life engine versions prior to July 7, 2004
Description The issue allows remote attackers to cause a denial of service, resulting in either a server or client crash. This is achieved by sending an empty fragmented packet.
Recommendations For versions prior to July 7, 2004, consider applying configuration changes to handle or reject empty fragmented packets to prevent denial of service attacks. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-0724

Affected Products

Half-Life Engine