7.5
CVSSv2

CVE-2017-11721

Published: 03/08/2017 Updated: 08/11/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in ioquake3 prior to 2017-08-02 allows remote malicious users to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted packet.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ioquake3 ioquake3

Vendor Advisories

Debian Bug report logs - #870725 CVE-2017-11721: read buffer overflow in MSG_ReadBits Package: src:ioquake3; Maintainer for src:ioquake3 is Debian Games Team <pkg-games-devel@listsaliothdebianorg>; Reported by: Moritz Muehlenhoff <jmm@debianorg> Date: Fri, 4 Aug 2017 14:33:05 UTC Severity: grave Tags: fixed-upst ...
A read buffer overflow was discovered in the idtech3 (Quake III Arena) family of game engines This allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted packet For the oldstable distribution (jessie), this problem has been fixed in version 136+u20140802+gca9eebb-2+deb8u2 ...