First published: Thu Jul 31 2008(Updated: )
Unreal Tournament 3 1.3beta4 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a UDP packet in which the value of a certain size field is greater than the total packet length, aka attack 2 in ut3mendo.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Unreal Tournament | <=1.3 | |
Unreal Tournament | =1.1 | |
Unreal Tournament | =1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-3410 is classified as a moderate severity vulnerability due to its potential to cause a denial of service.
CVE-2008-3410 affects Unreal Tournament 3 versions 1.1 through 1.3beta4.
CVE-2008-3410 can be exploited by sending a specially crafted UDP packet that causes a NULL pointer dereference.
To mitigate CVE-2008-3410, update to a patched version of Unreal Tournament 3 if available.
CVE-2008-3410 can lead to crashes of the Unreal Tournament 3 daemon, resulting in a denial of service.