RSS   Vulnerabilities for 'DIM3'   RSS

2007-03-02
 
CVE-2006-7096

 

 
Buffer overflow in the network_host_handle_join function in host.c in dimension 3 engine (dim3) 1.5 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long nickname.

 
 
CVE-2006-7095

 

 
Integer signedness error in the network_receive_packet function in socket.c in dimension 3 engine (dim3) 1.5 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a large data_len value, which is cast to a signed short and results in a buffer overflow.

 


Copyright 2024, cxsecurity.com

 

Back to Top