First published: Fri Dec 31 2004(Updated: )
Buffer overflow in Need for Speed Hot Pursuit 2.0 client (NFSHP2), version 242 and earlier, allows remote attackers (servers) to execute arbitrary code via long (1) gamename, (2) gamever, (3) hostname, (4) gametype, (5) mapname or (6) gamemode commands.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Need For Speed: Hot Pursuit 2 | <=242.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-2099 is considered a critical vulnerability due to its potential to allow remote code execution.
To fix CVE-2004-2099, update to a version of Need for Speed Hot Pursuit 2 that is later than 242.0.
The primary risk of CVE-2004-2099 is that remote attackers could execute arbitrary code on the affected system.
CVE-2004-2099 affects Need for Speed Hot Pursuit 2 version 242.0 and earlier.
CVE-2004-2099 can be exploited by remote attackers who control the game servers.