VulnerabilityModified
CVE-2007-4508
Stack-based buffer overflow in Rebellion Asura engine, as used for the server in Rogue Trooper 1.0 and earlier and Prism 1.1.1.0 and earlier, allows remote attackers to execute arbitrary code via a long string in a 0xf007 packet for the challenge B query.
MEDIUM 6.8EPSS 6.02%
Does this matter?
Lower severity and a low EPSS score (6.02%). Track it; it rarely justifies an emergency change on its own.
Description
Stack-based buffer overflow in Rebellion Asura engine, as used for the server in Rogue Trooper 1.0 and earlier and Prism 1.1.1.0 and earlier, allows remote attackers to execute arbitrary code via a long string in a 0xf007 packet for the challenge B query.
- CVSS 2.0
- 6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
- EPSS
- 6.02% probability · 93th percentile
- CISA KEV
- Not listed
- Affected
- rebellion/rogue trooper · rival interactive/prism
- Source
- cve@mitre.org
References
- http://aluigi.altervista.org/adv/asurabof-adv.txt
- http://osvdb.org/39799
- http://secunia.com/advisories/24023
- http://secunia.com/advisories/26571
- http://securityreason.com/securityalert/3053
- http://www.securityfocus.com/archive/1/477357/100/0/threaded
- http://www.securityfocus.com/bid/25411Exploit
- http://www.vupen.com/english/advisories/2007/2955
- http://www.vupen.com/english/advisories/2007/2956
- https://exchange.xforce.ibmcloud.com/vulnerabilities/36221
- http://aluigi.altervista.org/adv/asurabof-adv.txt
- http://osvdb.org/39799
- http://secunia.com/advisories/24023
- http://secunia.com/advisories/26571
- http://securityreason.com/securityalert/3053
- http://www.securityfocus.com/archive/1/477357/100/0/threaded
- http://www.securityfocus.com/bid/25411Exploit
- http://www.vupen.com/english/advisories/2007/2955
- http://www.vupen.com/english/advisories/2007/2956
- https://exchange.xforce.ibmcloud.com/vulnerabilities/36221
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.