PT-2004-1804 · Valve · Half-Life Engine
Soul Beaver
+1
·
Published
2004-07-23
·
Updated
2017-07-11
·
CVE-2004-0724
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Half-Life engine versions prior to July 7, 2004
Description
The issue allows remote attackers to cause a denial of service, resulting in either a server or client crash. This is achieved by sending an empty fragmented packet.
Recommendations
For versions prior to July 7, 2004, consider applying configuration changes to handle or reject empty fragmented packets to prevent denial of service attacks. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Half-Life Engine