VulnerabilityModified
CVE-2005-0983
Quake 3 engine, as used in multiple games, allows remote attackers to cause a denial of service (client disconnect) via a long message, which is not properly truncated and causes the engine to process the remaining data as if it were network data.
MEDIUM 5.0EPSS 2.56%
Does this matter?
Lower severity and a low EPSS score (2.56%). Track it; it rarely justifies an emergency change on its own.
Description
Quake 3 engine, as used in multiple games, allows remote attackers to cause a denial of service (client disconnect) via a long message, which is not properly truncated and causes the engine to process the remaining data as if it were network data.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 2.56% probability · 84th percentile
- CISA KEV
- Not listed
- Affected
- activision/call of duty · activision/call of duty united offensive · activision/return to castle wolfenstein · id software/quake 3 arena · id software/quake 3 arena server · id software/quake 3 engine · id software/wolfenstein enemy territory · lucasarts/star wars jedi knight ii jedi outcast · lucasarts/star wars jedi knight jedi academy · raven software/soldier of fortune 2
- Source
- cve@mitre.org
References
- http://aluigi.altervista.org/adv/q3msgboom-adv.txtExploit
- http://bani.anime.net/banimod/forums/viewtopic.php?p=27322
- http://marc.info/?l=bugtraq&m=111246796918067&w=2
- http://secunia.com/advisories/14811
- http://www.securityfocus.com/bid/12976
- http://aluigi.altervista.org/adv/q3msgboom-adv.txtExploit
- http://bani.anime.net/banimod/forums/viewtopic.php?p=27322
- http://marc.info/?l=bugtraq&m=111246796918067&w=2
- http://secunia.com/advisories/14811
- http://www.securityfocus.com/bid/12976
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.