PT-2006-5797 · Activision · Call Of Duty+2
Luigi Auriemma
+1
·
Published
2006-09-28
·
Updated
2017-07-20
·
CVE-2006-5058
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Call of Duty versions 1.5b and earlier
Call of Duty United Offensive versions 1.51b and earlier
Call of Duty 2 versions 1.3 and earlier
Description
The issue allows remote attackers to execute arbitrary code via a long map argument to the "callvote map" command. This is a result of a buffer overflow.
Recommendations
For Call of Duty versions 1.5b and earlier, update to a version later than 1.5b to resolve the issue.
For Call of Duty United Offensive versions 1.51b and earlier, update to a version later than 1.51b to resolve the issue.
For Call of Duty 2 versions 1.3 and earlier, update to a version later than 1.3 to resolve the issue.
As a temporary workaround, consider restricting the use of the
callvote map command until a patch is available.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Call Of Duty
Call Of Duty 2
Call Of Duty United Offensive