CVE Database
/

CVE-2007-4447

Back to search

CVE-2007-4447

Published: Aug 21, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple buffer overflows in the client in Toribash 2.71 and earlier allow remote attackers to (1) execute arbitrary code via a long game command in a replay (.rpl) file and (2) cause a denial of service (application crash) via a long SAY command that omits a required LF character; and allow remote Toribash servers to execute arbitrary code via (3) a long game command and (4) a long SAY command that omits a required LF character.

VendorProductVersions

n/a

n/a

affected
n/a

References

toribash-say-bo(36097)
vdb-entry
x_refsource_XF
25359
vdb-entry
x_refsource_BID
26507
third-party-advisory
x_refsource_SECUNIA
3033
third-party-advisory
x_refsource_SREASON

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now