Lucene search

K
cveRedhatCVE-2011-4620
HistoryDec 31, 2011 - 1:55 a.m.

CVE-2011-4620

2011-12-3101:55:00
CWE-119
redhat
web.nvd.nist.gov
35
cve-2011-4620
buffer overflow
ulseterror
plib
torcs
remote code execution
security vulnerability

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.6

Confidence

Low

EPSS

0.385

Percentile

97.3%

Buffer overflow in the ulSetError function in util/ulError.cxx in PLIB 1.8.5, as used in TORCS 1.3.1 and other products, allows user-assisted remote attackers to execute arbitrary code via vectors involving a long error message, as demonstrated by a crafted acc file for TORCS. NOTE: some of these details are obtained from third party information.

Affected configurations

Nvd
Node
steve_j_bakerplibMatch1.8.5
VendorProductVersionCPE
steve_j_bakerplib1.8.5cpe:2.3:a:steve_j_baker:plib:1.8.5:*:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.6

Confidence

Low

EPSS

0.385

Percentile

97.3%