server/sv_main.c in Quake3 Arena, as used in ioquake3 before r1762, OpenArena, Tremulous, and other products, allows remote attackers to cause a denial of service (network traffic amplification) via a spoofed (1) getstatus or (2) rcon request.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2014-10-27 13:55
Updated : 2014-10-28 18:16
NVD link : CVE-2010-5077
Mitre link : CVE-2010-5077
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
openarena
- openarena
ioquake3
- ioquake3_engine
tremulous
- tremulous