PT-2010-1654 · Deliantra · Deliantra Server

Published

2010-05-07

·

Updated

2017-08-17

·

CVE-2009-4846

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Deliantra Server versions prior to 2.82
Description The issue is related to multiple buffer overflows that allow remote attackers to execute arbitrary code. This is specifically tied to vectors related to (1) the command gsay function in server/c party.C and (2) the book implementation.
Recommendations For versions prior to 2.82, update to version 2.82 or later to resolve the issue. As a temporary workaround, consider restricting access to the command gsay function and the book implementation until a patch is applied.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2009-4846

Affected Products

Deliantra Server