mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-22 18:09:40 +02:00
18 lines
927 B
Markdown
18 lines
927 B
Markdown
### [CVE-2012-2091](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-2091)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
Multiple buffer overflows in FlightGear 2.6 and earlier and SimGear 2.6 and earlier allow user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a (1) long string in a rotor tag of an aircraft xml model to the Rotor::getValueforFGSet function in src/FDM/YASim/Rotor.cpp or (2) a crafted UDP packet to the SGSocketUDP::read function in simgear/simgear/simgear/io/sg_socket_udp.cxx.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- http://sourceforge.net/mailarchive/message.php?msg_id=28957051
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|