vendor:
aGSM
by:
Unknown
7.5
CVSS
HIGH
Remote Buffer Overflow
119
CWE
Product Name: aGSM
Affected Version From: aGSM version 2.35c
Affected Version To: Unknown
Patch Exists: NO
Related CWE:
CPE: a:ag-sm:aGSM:2.35c
Platforms Tested:
Unknown
Remote Buffer Overflow in aGSM
aGSM is prone to a remote buffer overflow vulnerability. The issue occurs in the aGSM server information parsing routines for Half-Life game servers. A malicious server can execute arbitrary code on an affected client by exploiting a lack of sufficient bounds checking on the hostname parameter in a server reply to an info request.
Mitigation:
It is recommended to update to the latest version of aGSM or apply any patches or security updates provided by the vendor.