First published: Tue Dec 19 2000(Updated: )
Format string vulnerability in Half Life dedicated server build 3104 and earlier allows remote attackers to execute arbitrary commands by injecting format strings into the changelevel command, via the system console or rcon.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Valve Software Half-life Dedicated Server | =3.1.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0969 is considered a critical vulnerability due to the potential for remote code execution.
To fix CVE-2000-0969, upgrade to Half Life Dedicated Server version 3.1.4 or later.
CVE-2000-0969 affects Half Life Dedicated Server versions 3.1.3 and earlier.
Yes, CVE-2000-0969 can be exploited remotely via the system console or rcon.
CVE-2000-0969 is associated with format string vulnerabilities that allow execution of arbitrary commands.