PT-2012-3800 · Simgear+1 · Simgear+1
Andres Gomez
·
Published
2012-06-17
·
Updated
2017-08-29
·
CVE-2012-2090
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
FlightGear versions 2.6 and earlier
SimGear versions 2.6 and earlier
Description
The issue allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via format string specifiers in certain data chunk values in an aircraft xml model. This affects files such as
fgfs/flightgear/src/Cockpit/panel.cxx, fgfs/flightgear/src/Network/generic.cxx, or simgear/simgear/scene/model/SGText.cxx in scene graph models.Recommendations
For FlightGear versions 2.6 and earlier, consider updating to a version later than 2.6 to resolve the issue.
For SimGear versions 2.6 and earlier, consider updating to a version later than 2.6 to resolve the issue.
As a temporary workaround, consider restricting the use of format string specifiers in aircraft xml models to minimize the risk of exploitation.
Fix
Use of Externally-Controlled Format String
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Flightgear
Simgear