Vulnerabilities > CVE-2006-1194 - Unspecified vulnerability in Enet Library

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
enet
exploit available

Summary

Integer signedness error in the enet_protocol_handle_incoming_commands function in protocol.c for ENet library CVS version Jul 2005 and earlier, as used in products including (1) Cube, (2) Sauerbraten, and (3) Duke3d_w32, allows remote attackers to cause a denial of service (application crash) via a packet with a large command length value, which leads to an invalid memory access.

Vulnerable Configurations

Part Description Count
Application
Enet
1

Exploit-Db

descriptionENet Multiple Denial of Service Vulnerabilities. CVE-2006-1194. Dos exploits for multiple platform
idEDB-ID:27420
last seen2016-02-03
modified2006-03-13
published2006-03-13
reporterLuigi Auriemma
sourcehttps://www.exploit-db.com/download/27420/
titleENet Multiple Denial of Service Vulnerabilities