Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2008-6704
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-6704

Description:
Integer overflow in the NET_Compressor::Decompress function in S.T.A.L.K.E.R.: Shadow of Chernobyl 1.0006 and earlier allows remote attackers to cause a denial of service (server crash) via a crafted packet with a 0xc1 value that contains no compressed data, which triggers a copy of a large amount of memory.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/43456

SAID
  Secunia Advisory: SA30891

OSVDB
  46627

MISC
  http://aluigi.altervista.org/adv/stalker39x-adv.txt

BUGTRAQ
  http://www.securityfocus.com/archive/1/493765

BID
  29997


Return to the previous page.