Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2011-3012

Опубликовано: 09 авг. 2011
Источник: debian
EPSS Низкий

Описание

The ioQuake3 engine, as used in World of Padman 1.2 and earlier, Tremulous 1.1.0, and ioUrbanTerror 2007-12-20, does not check for dangerous file extensions before writing to the quake3 directory, which allows remote attackers to execute arbitrary code via a crafted third-party addon that creates a Trojan horse DLL file, a different vulnerability than CVE-2011-2764.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
openarenafixed0.8.5-5+exp1package
openarenano-dsasqueezepackage
ioquake3fixed1.36+svn1946-4package
tremulousfixed1.1.0-6package
tremulousfixed1.1.0-7~squeeze1squeezepackage

Примечания

  • Current openarena packages use the share ioquake3 engine

EPSS

Процентиль: 86%
0.02842
Низкий

Связанные уязвимости

ubuntu
больше 14 лет назад

The ioQuake3 engine, as used in World of Padman 1.2 and earlier, Tremulous 1.1.0, and ioUrbanTerror 2007-12-20, does not check for dangerous file extensions before writing to the quake3 directory, which allows remote attackers to execute arbitrary code via a crafted third-party addon that creates a Trojan horse DLL file, a different vulnerability than CVE-2011-2764.

nvd
больше 14 лет назад

The ioQuake3 engine, as used in World of Padman 1.2 and earlier, Tremulous 1.1.0, and ioUrbanTerror 2007-12-20, does not check for dangerous file extensions before writing to the quake3 directory, which allows remote attackers to execute arbitrary code via a crafted third-party addon that creates a Trojan horse DLL file, a different vulnerability than CVE-2011-2764.

github
больше 3 лет назад

The ioQuake3 engine, as used in World of Padman 1.2 and earlier, Tremulous 1.1.0, and ioUrbanTerror 2007-12-20, does not check for dangerous file extensions before writing to the quake3 directory, which allows remote attackers to execute arbitrary code via a crafted third-party addon that creates a Trojan horse DLL file, a different vulnerability than CVE-2011-2764.

EPSS

Процентиль: 86%
0.02842
Низкий