Vulnerabilities > CVE-2007-4257 - Buffer Overflow vulnerability in LFS Live for Speed Sp1/Sp2

047910
CVSS 6.8 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
lfs
exploit available

Summary

Multiple buffer overflows in Live for Speed (LFS) S1 and S2 allow user-assisted remote attackers to execute arbitrary code via (1) a .spr file (single player replay file) containing a long user name or (2) a .ply file containing a long number plate string, different vectors than CVE-2007-4140.

Vulnerable Configurations

Part Description Count
Application
Lfs
2

Exploit-Db

  • descriptionLive for Speed S1/S2/Demo (.spr file) Buffer Overflow Exploit. CVE-2007-4257. Local exploit for windows platform
    fileexploits/windows/local/4263.cpp
    idEDB-ID:4263
    last seen2016-01-31
    modified2007-08-06
    platformwindows
    port
    published2007-08-06
    reportern00b
    sourcehttps://www.exploit-db.com/download/4263/
    titleLive for Speed S1/S2/Demo - .spr Buffer Overflow Exploit
    typelocal
  • descriptionLive for Speed S1/S2/Demo (.ply file) Buffer Overflow Exploit. CVE-2007-4257. Local exploit for windows platform
    fileexploits/windows/local/4262.cpp
    idEDB-ID:4262
    last seen2016-01-31
    modified2007-08-06
    platformwindows
    port
    published2007-08-06
    reportern00b
    sourcehttps://www.exploit-db.com/download/4262/
    titleLive for Speed S1/S2/Demo - .ply Buffer Overflow Exploit
    typelocal