Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2012-2090

Опубликовано: 17 июн. 2012
Источник: nvd
CVSS2: 9.3
EPSS Низкий

Описание

Multiple format string vulnerabilities in FlightGear 2.6 and earlier and SimGear 2.6 and earlier allow user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via format string specifiers in certain data chunk values in an aircraft xml model to (1) fgfs/flightgear/src/Cockpit/panel.cxx or (2) fgfs/flightgear/src/Network/generic.cxx, or (3) a scene graph model to simgear/simgear/scene/model/SGText.cxx.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:flightgear:flightgear:*:*:*:*:*:*:*:*
Версия до 2.6.0 (включая)
cpe:2.3:a:flightgear:flightgear:1.9.1:*:*:*:*:*:*:*
cpe:2.3:a:flightgear:flightgear:2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:simgear:simgear:*:*:*:*:*:*:*:*
Версия до 2.6.0 (включая)
cpe:2.3:a:simgear:simgear:1.9.1:*:*:*:*:*:*:*
cpe:2.3:a:simgear:simgear:2.0.0:*:*:*:*:*:*:*

EPSS

Процентиль: 90%
0.05782
Низкий

9.3 Critical

CVSS2

Дефекты

CWE-134

Связанные уязвимости

ubuntu
больше 13 лет назад

Multiple format string vulnerabilities in FlightGear 2.6 and earlier and SimGear 2.6 and earlier allow user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via format string specifiers in certain data chunk values in an aircraft xml model to (1) fgfs/flightgear/src/Cockpit/panel.cxx or (2) fgfs/flightgear/src/Network/generic.cxx, or (3) a scene graph model to simgear/simgear/scene/model/SGText.cxx.

debian
больше 13 лет назад

Multiple format string vulnerabilities in FlightGear 2.6 and earlier a ...

github
больше 3 лет назад

Multiple format string vulnerabilities in FlightGear 2.6 and earlier and SimGear 2.6 and earlier allow user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via format string specifiers in certain data chunk values in an aircraft xml model to (1) fgfs/flightgear/src/Cockpit/panel.cxx or (2) fgfs/flightgear/src/Network/generic.cxx, or (3) a scene graph model to simgear/simgear/scene/model/SGText.cxx.

EPSS

Процентиль: 90%
0.05782
Низкий

9.3 Critical

CVSS2

Дефекты

CWE-134