10

CVE-2004-0608

Exploit
The Unreal Engine, as used in DeusEx 1.112fm and earlier, Devastation 390 and earlier, Mobile Forces 20000 and earlier, Nerf Arena Blast 1.2 and earlier, Postal 2 1337 and earlier, Rune 107 and earlier, Tactical Ops 3.4.0 and earlier, Unreal 1 226f and earlier, Unreal II XMP 7710 and earlier, Unreal Tournament 451b and earlier, Unreal Tournament 2003 2225 and earlier, Unreal Tournament 2004 before 3236, Wheel of Time 333b and earlier, and X-com Enforcer, allows remote attackers to execute arbitrary code via a UDP packet containing a secure query with a long value, which overwrites memory.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Arush ≫ Devastation Version 390.0
Epic Games ≫ Unreal Engine Version 226f
Epic Games ≫ Unreal Engine Version 433
Epic Games ≫ Unreal Engine Version 436
Epic Games ≫ Unreal Tournament Version 451b
Epic Games ≫ Unreal Tournament 2003 Version 2199_linux
Epic Games ≫ Unreal Tournament 2003 Version 2199_macos
Epic Games ≫ Unreal Tournament 2003 Version 2199_win32
Epic Games ≫ Unreal Tournament 2003 Version 2225_macos
Epic Games ≫ Unreal Tournament 2003 Version 2225_win32
Infogrames ≫ Tacticalops Version 3.4
Ion Storm ≫ Deusex Version 1.112_fm
Rage Software ≫ Mobile Forces Version 20000.0
Robert Jordan ≫ Wheel Of Time Version 333.0b
Running With Scissors ≫ Postal 2 Version 1337
Gentoo ≫ Linux Version 1.4
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 73.54% 0.994
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://aluigi.altervista.org/adv/unsecure-adv.txt
Vendor Advisory
http://marc.info/?l=bugtraq&m=108787105023304&w=2
http://www.gentoo.org/security/en/glsa/glsa-200407-14.xml
Patch
Vendor Advisory
http://www.securityfocus.com/bid/10570
Vendor Advisory
Exploit
https://exchange.xforce.ibmcloud.com/vulnerabilities/16451