VulnerabilityModified
CVE-2005-3488
Scorched 3D 39.1 (bf) and earlier allows remote attackers to cause a denial of service (long loop and server hang) via a negative numplayers value that bypasses a signed check in ServerConnectHandler.cpp.
HIGH 7.8EPSS 10.1%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 10.1%, higher than 95% of all known CVEs. Patch or mitigate before the next change window.
Description
Scorched 3D 39.1 (bf) and earlier allows remote attackers to cause a denial of service (long loop and server hang) via a negative numplayers value that bypasses a signed check in ServerConnectHandler.cpp.
- CVSS 2.0
- 7.8 HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
- EPSS
- 10.07% probability · 95th percentile
- CISA KEV
- Not listed
- Affected
- scorched 3d/scorched 3d
- Source
- cve@mitre.org
References
- http://aluigi.altervista.org/adv/scorchbugs-adv.txtExploit, Vendor Advisory
- http://marc.info/?l=full-disclosure&m=113095941031946&w=2
- http://secunia.com/advisories/17423
- http://www.gentoo.org/security/en/glsa/glsa-200511-12.xml
- http://www.securityfocus.com/bid/15292
- http://www.vupen.com/english/advisories/2005/2288
- http://aluigi.altervista.org/adv/scorchbugs-adv.txtExploit, Vendor Advisory
- http://marc.info/?l=full-disclosure&m=113095941031946&w=2
- http://secunia.com/advisories/17423
- http://www.gentoo.org/security/en/glsa/glsa-200511-12.xml
- http://www.securityfocus.com/bid/15292
- http://www.vupen.com/english/advisories/2005/2288
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.