PT-2006-2127 · Sauerbraten · Sauerbraten
Luigi Auriemma
·
Published
2006-03-09
·
Updated
2018-10-18
·
CVE-2006-1100
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Sauerbraten versions 2006 02 28 and earlier
Description
The issue is related to a buffer overflow in the
sgetstr function, which can be exploited by remote attackers to execute arbitrary code. This is achieved by sending long streams of input data.Recommendations
For Sauerbraten versions 2006 02 28 and earlier, consider disabling the
sgetstr function in shared/cube.h as a temporary workaround until a patch is available. Restrict access to the shared/cube.h module to minimize the risk of exploitation.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Sauerbraten