7.8

CVE-2006-3393

Exploit
Papyrus NASCAR Racing 4 4.1.3.1.6 and earlier, 2002 Season 1.1.0.2 and earlier, and 2003 Season 1.2.0.1 and earlier allows remote attackers to cause a denial of service (CPU consumption) by sending an empty UDP datagram, which is not properly discarded due to use of the FIONREAD asynchronous socket.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Electronic ArtsNascar Racing Version <= 4.1.3.1.6
Electronic ArtsNascar Racing Version <= 2002_season_1.1.2
Electronic ArtsNascar Racing Version <= 2003_season_1.2.1
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.92% 0.772
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 10 6.9
AV:N/AC:L/Au:N/C:N/I:N/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://aluigi.altervista.org/adv/nascarzero-adv.txt
Vendor Advisory
Exploit
http://secunia.com/advisories/20947
Vendor Advisory
http://www.securityfocus.com/bid/18778
http://www.vupen.com/english/advisories/2006/2647
https://exchange.xforce.ibmcloud.com/vulnerabilities/27522