Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple buffer overflows in Doomsday (aka deng) 1.9.0-beta5.1 and earlier allow remote attackers to execute arbitrary code via a long chat (PKT_CHAT) message that is not properly handled by the (1) D_NetPlayerEvent function in d_net.c or the (2) Msg_Write function in net_msg.c, or (3) many commands that are not properly handled by the NetSv_ReadCommands function in d_netsv.c; or (4) cause a denial of service (daemon crash) via a chat (PKT_CHAT) message without a final '\0' character.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Doomsday Engine 多个远程漏洞
Vulnerability Description
Doomsday (又称deng) 1.9.0-beta5.1版本及其早期版本中存在多个缓冲区溢出。 远程攻击者可以借助一个超长的在(1) d_net.c的D_NetPlayerEvent函数或 (2) net_msg.c中的Msg_Write函数中未经过适当处理的chat (PKT_CHAT)信息,或(3)d_netsv.c的NetSv_ReadCommands函数中学多未经过适当处理的指令,执行任意代码; 或(4)可以借助不具备一个最终 '\0'字符的chat (PKT_CHAT)信息,造成拒绝服务(
CVSS Information
N/A
Vulnerability Type
N/A