CVE-2005-3487
Multiple buffer overflows in Scorched 3D 39.1 (bf) and earlier allow remote attackers to execute arbitrary code via various (1) GLConsole::addLine, (2) ServerCommon::sendString, (3) ServerCommon::serverLog functions, (4) a long command that is not…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (7.72%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Multiple buffer overflows in Scorched 3D 39.1 (bf) and earlier allow remote attackers to execute arbitrary code via various (1) GLConsole::addLine, (2) ServerCommon::sendString, (3) ServerCommon::serverLog functions, (4) a long command that is not properly handled in ComsMessageHandler.cpp when generating an error message, (5) a long UniqueID value in Logger.cpp, and possibly other unspecified vectors.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 7.72% probability · 94th percentile
- CISA KEV
- Not listed
- Affected
- scorched 3d/scorched 3d
- Source
- cve@mitre.org
References
- http://aluigi.altervista.org/adv/scorchbugs-adv.txtExploit, Vendor Advisory
- http://marc.info/?l=full-disclosure&m=113095941031946&w=2
- http://secunia.com/advisories/17423
- http://www.gentoo.org/security/en/glsa/glsa-200511-12.xml
- http://www.osvdb.org/20468
- http://www.osvdb.org/20469
- http://www.securityfocus.com/bid/15292
- http://www.vupen.com/english/advisories/2005/2288
- http://aluigi.altervista.org/adv/scorchbugs-adv.txtExploit, Vendor Advisory
- http://marc.info/?l=full-disclosure&m=113095941031946&w=2
- http://secunia.com/advisories/17423
- http://www.gentoo.org/security/en/glsa/glsa-200511-12.xml
- http://www.osvdb.org/20468
- http://www.osvdb.org/20469
- http://www.securityfocus.com/bid/15292
- http://www.vupen.com/english/advisories/2005/2288
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.