Vulnerabilities > CVE-2004-0238 - Local Buffer Overflow vulnerability in 0Verkill 0.16

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
0verkill
exploit available

Summary

Multiple buffer overflows in Overkill (0verkill) 0.15pre3 might allow local users to execute arbitrary code in the client via a long HOME environment variable in the (1) load_cfg and (2) save_cfg functions; possibly allow remote attackers to execute arbitrary code via long strings to (3) the send_message function; and, in the server, via (4) the parse_command_line function.

Vulnerable Configurations

Part Description Count
Application
0Verkill
1

Exploit-Db

description0verkill 0.16 Game Client Multiple Local Buffer Overflow Vulnerabilities. CVE-2004-0238. Local exploit for linux platform
idEDB-ID:23634
last seen2016-02-02
modified2004-02-02
published2004-02-02
reporterpi3ki31ny
sourcehttps://www.exploit-db.com/download/23634/
title0verkill 0.16 - Game Client Multiple Local Buffer Overflow Vulnerabilities