Carsten's 3D Engine (Ca3DE), March 2004 version and earlier, allows remote attackers to execute arbitrary code via text strings that are not null terminated, which triggers a null dereference.
Link | Tags |
---|---|
http://aluigi.altervista.org/adv/ca3dex-adv.txt | exploit |
http://secunia.com/advisories/14483 | third party advisory |
http://www.securityfocus.com/bid/12727 | vdb entry exploit |
http://securitytracker.com/id?1013361 | vdb entry exploit |