Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
id software quake 3 engine vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2007-5248
Multiple format string vulnerabilities in the ID Software Doom 3 engine, as used by Doom 3 1.3.1 and previous versions, Quake 4 1.4.2 and previous versions, and Prey 1.3 and previous versions, when Punkbuster (PB) is enabled, allow remote malicious users to execute arbitrary code...
Id Software Doom 3
Id Software Quake 4
Take2games Prey
1 EDB exploit
NA
CVE-2006-3400
Stack-based buffer overflow in the CG_ServerCommand function in Quake 3 Engine as used by Soldier of Fortune 2 (SOF2MP) GOLD 1.03 allows remote malicious users to cause a denial of service and possibly execute code by sending a long command from the server.
Id Software Quake 3 Engine Icculus 812
Raven Software Soldier Of Fortune 2 1.03
Id Software Quake 3 Engine 1.32b
Id Software Quake 3 Engine 1.32c
1 EDB exploit
NA
CVE-2006-3401
Stack-based buffer overflow in Quake 3 Engine as used by Quake 3: Arena 1.32b and 1.32c allows remote malicious users to cause a denial of service and possibly execute code via long CS_ITEMS values.
Id Software Quake 3 Engine 1.32c
Id Software Quake 3 Engine Icculus 812
Id Software Quake 3 Engine 1.32b
1 EDB exploit
NA
CVE-2006-3324
The Automatic Downloading option in the id3 Quake 3 Engine and the Icculus Quake 3 Engine (ioquake3) before revision 804 allows remote malicious users to overwrite arbitrary files in the quake3 directory (fs_homepath cvar) via a long string of filenames, as contained in the neede...
Id Software Quake 3 Engine 1.32c
Id Software Quake 3 Engine Icculus 803
Id Software Quake 3 Engine
Id Software Quake 3 Engine 1.32b
Id Software Quake 3 Engine Icculus 804
1 EDB exploit
NA
CVE-2006-3325
client/cl_parse.c in the id3 Quake 3 Engine 1.32c and the Icculus Quake 3 Engine (ioquake3) revision 810 and previous versions allows remote malicious servers to overwrite arbitrary write-protected cvars variables on the client, such as cl_allowdownload for Automatic Downloading ...
Id Software Quake 3 Engine Icculus 804
Id Software Quake 3 Engine Icculus 805
Id Software Quake 3 Engine 1.32c
Id Software Quake 3 Engine Icculus 803
Id Software Quake 3 Engine Icculus 810
Id Software Quake 3 Engine
Id Software Quake 3 Engine 1.32b
Id Software Quake 3 Engine Icculus 808
Id Software Quake 3 Engine Icculus 809
Id Software Quake 3 Engine Icculus 806
Id Software Quake 3 Engine Icculus 807
2 EDB exploits
NA
CVE-2006-2875
Stack-based buffer overflow in the CL_ParseDownload function of Quake 3 Engine 1.32c and previous versions, as used in multiple products, allows remote malicious users to execute arbitrary code via a svc_download command with compressed data that triggers the overflow during expa...
Id Software Quake 3 Engine
1 EDB exploit
NA
CVE-2006-2082
Directory traversal vulnerability in Quake 3 engine, as used in products including Quake3 Arena, Return to Castle Wolfenstein, Wolfenstein: Enemy Territory, and Star Trek Voyager: Elite Force, when the sv_allowdownload cvar is enabled, allows remote malicious users to read arbitr...
Id Software Quake 3 Engine
NA
CVE-2006-2236
Buffer overflow in the Quake 3 Engine, as used by (1) ET 2.60, (2) Return to Castle Wolfenstein 1.41, and (3) Quake III Arena 1.32b allows remote malicious users to execute arbitrary commands via a long remapShader command.
Id Software Wolfenstein Enemy Territory 2.60
Id Software Quake 3 Engine 1.32b
Id Software Return To Castle Wolfenstein 1.41
Id Software Quake 3 Arena 1.32b
1 EDB exploit
NA
CVE-2005-0983
Quake 3 engine, as used in multiple games, allows remote malicious users to cause a denial of service (client disconnect) via a long message, which is not properly truncated and causes the engine to process the remaining data as if it were network data.
Activision Call Of Duty 1.4
Activision Call Of Duty 1.5b
Id Software Quake 3 Arena 1.31
Id Software Quake 3 Arena Server 1.29f
Raven Software Soldier Of Fortune 2 1.0.3
Activision Return To Castle Wolfenstein 1.0
Activision Return To Castle Wolfenstein 1.1
Id Software Wolfenstein Enemy Territory 1.0.2
Id Software Wolfenstein Enemy Territory 2.56
Activision Call Of Duty United Offensive 1.41
Activision Call Of Duty United Offensive 1.51b
Id Software Quake 3 Arena Server 1.29g
Id Software Quake 3 Engine
Id Software Quake 3 Arena 1.1.7
Id Software Quake 3 Arena 1.16
Lucasarts Star Wars Jedi Knight Ii Jedi Outcast 1.0.4
Lucasarts Star Wars Jedi Knight Jedi Academy 1.0.11
Raven Software Soldier Of Fortune 2 1.0.2
NA
CVE-2005-0430
The Quake 3 engine, as used in multiple game packages, allows remote malicious users to cause a denial of service (shutdown game server) and possibly crash the server via a long infostring, possibly triggering a buffer overflow.
Id Software Quake 3 Engine
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-23316
SQL injection
type confusion
CVE-2024-20697
CVE-2024-4344
local
CVE-2024-30043
CVE-2024-3821
CVE-2024-5041
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started