mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-10 15:59:29 +02:00
903 B
903 B
CVE-2006-1102
Description
Sauerbraten 2006_02_28, as derived from the Cube engine, allows remote attackers to cause a denial of service (client exit) by forcing the server to change to a map (ogz) file whose name contains ".." sequences and has a certain length that prevents the addition of the ".ogz" extension.
POC
Reference
- http://aluigi.altervista.org/adv/evilcube-adv.txt
- http://aluigi.altervista.org/adv/evilcube-adv.txt
- http://securityreason.com/securityalert/548
- http://securityreason.com/securityalert/548
Github
No PoCs found on GitHub currently.