Medal Of Honor Allied Assault Remote Buffer Overflow Vulnerability
BID:10743
Info
Medal Of Honor Allied Assault Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 10743 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 17 2004 12:00AM |
| Updated: | May 15 2006 09:49PM |
| Credit: | Discovery is credited to Luigi Auriemma <[email protected]>. |
| Vulnerable: |
Electronic Arts Inc. Medal of Honor Allied Assault Spearhead 2.15 Electronic Arts Inc. Medal of Honor Allied Assault Breakthrough 2.40 b Electronic Arts Inc. Medal of Honor Allied Assault 1.11 v9 Electronic Arts Inc. Medal of Honor Allied Assault 1.1 Electronic Arts Inc. Medal of Honor Allied Assault 1.0 |
| Not Vulnerable: | |
Discussion
Medal Of Honor Allied Assault Remote Buffer Overflow Vulnerability
A remote buffer-overflow vulnerability was reported in Medal of Honor Allied Assault.
This issue may permit remote code execution in vulnerable game servers and clients. However, clients are reported to be affected only in LAN games, since Internet games use the Gamespy protocol. The issue also affects various expansion packs for the game.
A remote buffer-overflow vulnerability was reported in Medal of Honor Allied Assault.
This issue may permit remote code execution in vulnerable game servers and clients. However, clients are reported to be affected only in LAN games, since Internet games use the Gamespy protocol. The issue also affects various expansion packs for the game.
Exploit / POC
Medal Of Honor Allied Assault Remote Buffer Overflow Vulnerability
Proof-of-concept code that triggers a denial of service has been released.
Exploit code mohexp.c has been provided by millhouse@IRCnet. This exploit has been reportedly tested against Spearhead 2.15.
Proof-of-concept code that triggers a denial of service has been released.
Exploit code mohexp.c has been provided by millhouse@IRCnet. This exploit has been reportedly tested against Spearhead 2.15.
Solution / Fix
Medal Of Honor Allied Assault Remote Buffer Overflow Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]:[email protected]
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]:[email protected]
References
Medal Of Honor Allied Assault Remote Buffer Overflow Vulnerability
References:
References:
- Medal of Honor Allied Assault Homepage (Electronic Arts Inc.)
- Medal of Honor remote buffer-overflow (Luigi Auriemma
)