10
CVSSv2

CVE-2009-3637

Published: 13/01/2010 Updated: 10/10/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in the M_AddToServerList function in client/menu.c in Red Planet Arena Alien Arena 7.30 allows remote malicious users to execute arbitrary code via a packet with a crafted server description to UDP port 27901 followed by a packet with a long print command.

Vulnerable Product Search on Vulmon Subscribe to Product

icculus alien arena 7.30

Vendor Advisories

Debian Bug report logs - #552038 Security issue in server code Package: alien-arena; Maintainer for alien-arena is Debian Games Team <pkg-games-devel@listsaliothdebianorg>; Source for alien-arena is src:alien-arena (PTS, buildd, popcon) Reported by: Moritz Muehlenhoff <jmm@debianorg> Date: Thu, 22 Oct 2009 22:15: ...