[Forgot Password]
Login  Register Subscribe

23631

 
 

122183

 
 

98060

 
 

909

 
 

79198

 
 

109

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML

CVE-2007-5250

Date: (C)2007-10-06   (M)2017-07-31 


The Windows dedicated server for the Unreal engine, as used by America's Army and America's Army Special Forces 2.8.2 and earlier, when Punkbuster (PB) is enabled, allows remote attackers to cause a denial of service (server hang) via packets containing 0x07 characters or other unspecified invalid characters. NOTE: this issue may overlap CVE-2007-4443. NOTE: this issue might be in Punkbuster itself, but there are insufficient details to be certain.

CVSS Score: 4.3Access Vector: NETWORK
Exploit Score: 8.6Access Complexity: MEDIUM
Impact Score: 2.9Authentication: NONE
 Confidentiality: NONE
 Integrity: NONE
 Availability: PARTIAL





Reference:
http://www.securityfocus.com/archive/1/archive/1/481227/100/0/threaded
SECUNIA-27015
SREASON-3193
americasarmy-bell-dos(36898)
http://aluigi.altervista.org/adv/aaboompb-adv.txt
http://aluigi.org/poc/aaboompb.zip

CWE    1
CWE-189

© 2013 SecPod Technologies