5
CVSSv2

CVE-2006-2575

Published: 24/05/2006 Updated: 18/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The setFrame function in Lib/2D/Surface.hpp for NetPanzer 0.8 and previous versions allows remote malicious users to cause a denial of service (crash) via a client flag (frameNum) that is greater than 41, which triggers an assert error.

Vulnerable Product Search on Vulmon Subscribe to Product

pyrosoft inc netpanzer 0.8

Vendor Advisories

Debian Bug report logs - #370146 netpanzer: [CVE-2006-2575] setFrame() Denial of Service Vulnerability Package: netpanzer; Maintainer for netpanzer is Debian Games Team <pkg-games-devel@listsaliothdebianorg>; Source for netpanzer is src:netpanzer (PTS, buildd, popcon) Reported by: SALVETTI Djoume <djoume@taketorg> ...

Exploits

# netPanzer 08 rev 952 (frameNum) Server Terminiation Exploit githubcom/offensive-security/exploitdb-bin-sploits/raw/master/bin-sploits/1820zip (05232006-panzazip) # milw0rmcom [2006-05-23] ...