Soldat game server 1.4.2 and earlier, and dedicated server 2.6.2 and earlier, allows remote attackers to cause a client denial of service (crash) via (1) a long string to the file transfer port or (2) a long chat message, or (3) a server denial of service (continuous beep and slowdown) via a string containing many 0x07 or other control characters to the file transfer port.
Link | Tags |
---|---|
http://secunia.com/advisories/26564 | third party advisory |
http://www.securityfocus.com/archive/1/477624/100/0/threaded | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/36230 | vdb entry |
http://www.securityfocus.com/bid/25426 | vdb entry exploit |
http://aluigi.org/poc/soldatdos.zip | |
http://aluigi.altervista.org/adv/soldatdos-adv.txt | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/36231 | vdb entry |