The HTTP/XML-RPC service in Crysis 1.21 (game version 1.1.1.6156) and previous versions allows remote malicious users to cause a denial of service (crash) via a long HTTP request, which triggers a NULL pointer dereference.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ea crysis 1.1 |
||
ea crysis 1.2 |
||
ea crysis |