Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple format string vulnerabilities in the ID Software Doom 3 engine, as used by Doom 3 1.3.1 and earlier, Quake 4 1.4.2 and earlier, and Prey 1.3 and earlier, when Punkbuster (PB) is enabled, allow remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via format string specifiers in (1) a PB_Y packet to the YPG server or (2) a PB_U packet to UCON. NOTE: this issue might be in Punkbuster itself, but there are insufficient details to be certain.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
id Software Doom 3 Engine Punkbuster 多重格式字符串漏洞
Vulnerability Description
当Punkbuster (PB)被激活时,Doom 3 1.3.1版本及其早期版本, Quake 4 1.4.2版本及其早期版本,以及Prey 1.3版本及其早期版本中ID Software Doom 3 engine存在多重格式字符串漏洞,远程攻击者可以借助(1) 一个YPG服务器的PB_Y信息包或(2)UCON的一个PB_U信息包中指定的格式字符串执行任意代码或造成拒绝服务(daemon 崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A