5
CVE-2008-2748
- EPSS 3.49%
- Veröffentlicht 18.06.2008 19:41:00
- Zuletzt bearbeitet 16.06.2026 22:54:22
- Erkennungen
Skulltag 0.97d2-RC2 and earlier allows remote attackers to cause a denial of service (daemon hang) via a series of long, malformed connect packets, related to these packets being "parsed multiple times."
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Skulltag Team ≫ Skulltag Version 0.95c
Skulltag Team ≫ Skulltag Version 0.95d
Skulltag Team ≫ Skulltag Version 0.95e
Skulltag Team ≫ Skulltag Version 0.95f
Skulltag Team ≫ Skulltag Version 0.95g
Skulltag Team ≫ Skulltag Version 0.95h
Skulltag Team ≫ Skulltag Version 0.95i
Skulltag Team ≫ Skulltag Version 0.95j
Skulltag Team ≫ Skulltag Version 0.95k
Skulltag Team ≫ Skulltag Version 0.96b
Skulltag Team ≫ Skulltag Version 0.96c
Skulltag Team ≫ Skulltag Version 0.96d
Skulltag Team ≫ Skulltag Version 0.96e
Skulltag Team ≫ Skulltag Version 0.96f
Skulltag Team ≫ Skulltag Version 0.97b
Skulltag Team ≫ Skulltag Version 0.97c
Skulltag Team ≫ Skulltag Version 0.97c2
Skulltag Team ≫ Skulltag Version 0.97c3
Skulltag Team ≫ Skulltag Version 0.97d
Skulltag Team ≫ Skulltag Version 0.97d Update beta_1
Skulltag Team ≫ Skulltag Version 0.97d Update beta_2
Skulltag Team ≫ Skulltag Version 0.97d Update beta_3
Skulltag Team ≫ Skulltag Version 0.97d Update beta_4
Skulltag Team ≫ Skulltag Version 0.97d Update beta_4.1
Skulltag Team ≫ Skulltag Version 0.97d Update beta_4.2
Skulltag Team ≫ Skulltag Version 0.97d Update beta_4.3
Skulltag Team ≫ Skulltag Version 0.97d Update rc10
Skulltag Team ≫ Skulltag Version 0.97d Update rc9
Skulltag Team ≫ Skulltag Version 0.97d2 Update rc2
Skulltag Team ≫ Skulltag Version 0.97d2 Update rc3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 3.49% | 0.876 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:P
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
http://aluigi.org/poc/skulltagloop.zip
http://secunia.com/advisories/30668
http://securityreason.com/securityalert/3953
http://skulltag.com/testing/public/Skulltag%20Version%20History.txt
http://www.securityfocus.com/archive/1/493386/100/0/threaded
http://www.securityfocus.com/bid/29760
https://exchange.xforce.ibmcloud.com/vulnerabilities/43125