CVE-2000-0969: Critical severity valve software half-life dedicated server vulnerability
Published Dec 19, 2000
·Updated
Format string vulnerability in Half Life dedicated server build 3104 and earlier allows remote attackers to execute arbitrary commands by injecting format strings into the changelevel command, via the system console or rcon.
Affected Software
1 affected component
Valve Software Half-life Dedicated Server=3.1.3
Event History
Dec 19, 2000
CVE Published
05:00 AM
Jan 22, 2001
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-0969?
CVE-2000-0969 is considered a critical vulnerability due to the potential for remote code execution.
2
How do I fix CVE-2000-0969?
To fix CVE-2000-0969, upgrade to Half Life Dedicated Server version 3.1.4 or later.
3
What software is affected by CVE-2000-0969?
CVE-2000-0969 affects Half Life Dedicated Server versions 3.1.3 and earlier.
4
Can CVE-2000-0969 be exploited remotely?
Yes, CVE-2000-0969 can be exploited remotely via the system console or rcon.
5
What type of attack is associated with CVE-2000-0969?
CVE-2000-0969 is associated with format string vulnerabilities that allow execution of arbitrary commands.