9.3
CVSSv2

CVE-2012-2091

Published: 17/06/2012 Updated: 03/12/2016
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple buffer overflows in FlightGear 2.6 and previous versions and SimGear 2.6 and previous versions allow user-assisted remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via a (1) long string in a rotor tag of an aircraft xml model to the Rotor::getValueforFGSet function in src/FDM/YASim/Rotor.cpp or (2) a crafted UDP packet to the SGSocketUDP::read function in simgear/simgear/simgear/io/sg_socket_udp.cxx.

Vulnerable Product Search on Vulmon Subscribe to Product

simgear simgear 1.9.1

simgear simgear

simgear simgear 2.0.0

flightgear flightgear 2.0.0

flightgear flightgear 1.9.1

flightgear flightgear

Vendor Advisories

Debian Bug report logs - #669024 CVE-2012-2090 / CVE-2012-2091 Package: simgear; Maintainer for simgear is Debian FlightGear Crew <team+flightgear@trackerdebianorg>; Reported by: Moritz Muehlenhoff <jmm@debianorg> Date: Mon, 16 Apr 2012 16:03:02 UTC Severity: serious Tags: patch, security Found in version 2100- ...