PT-2007-2825 · Pennmush · Pennmush
Published
2007-03-13
·
Updated
2011-03-08
·
CVE-2007-1431
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
PennMUSH versions 1.8.2 through 1.8.2p3 and 1.8.3 through 1.8.3p1, but not including 1.8.3p1 and 1.8.2p3, can be simplified to:
PennMUSH versions 1.8.2 through 1.8.2p2 and 1.8.3
However, since 1.8.3p1 is the fixed version for 1.8.3 and 1.8.2p3 is the fixed version for 1.8.2, the correct representation is:
PennMUSH versions 1.8.2 through 1.8.2p2 and 1.8.3
Description
The issue allows attackers to cause a denial of service, resulting in a crash, related to the
speak and buy functions.Recommendations
For PennMUSH version 1.8.2, update to version 1.8.2p3.
For PennMUSH version 1.8.3, update to version 1.8.3p1.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Pennmush