vendor:
Quake 3 Engine
by:
RunningBon
7,5
CVSS
HIGH
Stack Overflow
119
CWE
Product Name: Quake 3 Engine
Affected Version From: SoF2 1.03
Affected Version To: SoF2 1.03
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2006
Quake 3 Engine Client CG_ServerCommand() Remote Stack Overflow Exploit (Win32)
This exploit is a DLL which gets injected into the server exe. It uses Microsoft Detours library to compile the exploit. It is a remote stack overflow exploit which uses a string which is heavily filtered before the overflow occurs. It is used to cause damage to the server exe.
Mitigation:
Use the latest version of the software and apply the latest security patches.