PT-2007-6698 · Amx · Amx Mod X

Published

2007-10-30

·

Updated

2012-10-30

·

CVE-2007-5713

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions AMX Mod X version 1.76d
Description The issue is related to an off-by-one error in the GeoIP module, which could potentially allow attackers to execute arbitrary code or cause a denial of service. This occurs via unspecified input related to geolocation, triggering an error message from either the geoip code2 or geoip code3 function, leading to a buffer overflow.
Recommendations For AMX Mod X version 1.76d, consider disabling the GeoIP module as a temporary workaround until a patch is available. Restrict access to the geoip code2 and geoip code3 functions to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2007-5713

Affected Products

Amx Mod X