Vulnerabilities > Bomberclone

DATE CVE VULNERABILITY TITLE RISK
2006-08-07 CVE-2006-4006 Information Exposure vulnerability in Bomberclone 0.11.3/0.11.4/0.11.5
The do_gameinfo function in BomberClone 0.11.6 and earlier, and possibly other functions, does not reset the packet data size, which causes the send_pkg function (packets.c) to use this data size when sending a reply, and allows remote attackers to read portions of server memory.
network
low complexity
bomberclone CWE-200
5.0
2006-08-07 CVE-2006-4005 Remote vulnerability in Bomberclone
BomberClone 0.11.6 and earlier allows remote attackers to cause a denial of service (daemon crash) via (1) a certain malformed PKGF_ackreq packet, which triggers a crash in the rscache_add() function in pkgcache.c; and (2) an error packet, which is intended to be received by clients and force client shutdown, but also triggers server shutdown.
network
low complexity
bomberclone
5.0
2006-02-17 CVE-2006-0460 Buffer Overflow vulnerability in BomberClone Error Messages
Multiple buffer overflows in BomberClone before 0.11.6.2 allow remote attackers to execute arbitrary code via long error messages.
network
low complexity
bomberclone
7.5