Integer underflow in Armed Assault (aka ArmA) 1.14 and earlier, and 1.16 beta, and Armed Assault II 1.02 and earlier allows remote attackers to cause a denial of service (crash) via a VoIP over Network (VON) packet to port 2305 with a negative packet_size value, which triggers a buffer over-read.
Weaknesses in this category are related to improper calculation or conversion of numbers.
Link | Tags |
---|---|
http://www.vupen.com/english/advisories/2009/1951 | vdb entry vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/51820 | vdb entry |
http://secunia.com/advisories/35900 | third party advisory vendor advisory |
http://aluigi.altervista.org/adv/armadioz-adv.txt | exploit |