vendor:
Racer Car and Racing Simulator
by:
Trancek
N/A
CVSS
N/A
Buffer Overflow
119
CWE
Product Name: Racer Car and Racing Simulator
Affected Version From: v0.5.3 beta 5
Affected Version To: v0.5.3 beta 5
Patch Exists: NO
Related CWE: CVE-2007-4370
CPE: a:racer:racer:0.5.3
Platforms Tested: Windows
2010
Racer v0.5.3 beta 5 Buffer Overflow
This module exploits the Racer Car and Racing Simulator game versions v0.5.3 beta 5 and earlier. Both the client and server listen on UDP port 26000. By sending an overly long buffer we are able to execute arbitrary code remotely.
Mitigation:
Unknown