Vulnerabilities > Stalker Game

DATE CVE VULNERABILITY TITLE RISK
2009-04-10 CVE-2008-6705 Remote vulnerability in S.T.A.L.K.E.R Shadow of Chernobyl
The MultipacketReciever::RecievePacket function in S.T.A.L.K.E.R.: Shadow of Chernobyl 1.0006 and earlier allows remote attackers to cause a denial of service (server termination) via a crafted packet without an expected 0xe0 or 0xe1 value, which triggers the INT3 instruction.
network
low complexity
stalker-game
5.0
2009-04-10 CVE-2008-6704 Numeric Errors vulnerability in Stalker-Game S.T.A.L.K.E.R.: Shadow of Chernobyl
Integer overflow in the NET_Compressor::Decompress function in S.T.A.L.K.E.R.: Shadow of Chernobyl 1.0006 and earlier allows remote attackers to cause a denial of service (server crash) via a crafted packet with a 0xc1 value that contains no compressed data, which triggers a copy of a large amount of memory.
network
low complexity
stalker-game CWE-189
5.0
2009-04-10 CVE-2008-6703 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Stalker-Game S.T.A.L.K.E.R.: Shadow of Chernobyl
Stack-based buffer overflow in the IPureServer::_Recieve function in S.T.A.L.K.E.R.: Shadow of Chernobyl 1.0006 and earlier allows remote attackers to execute arbitrary code via a compressed 0x39 packet, which is decompressed by the NET_Compressor::Decompress function.
network
low complexity
stalker-game CWE-119
critical
10.0
2009-04-10 CVE-2008-6702 Improper Input Validation vulnerability in Stalker-Game S.T.A.L.K.E.R.: Shadow of Chernobyl
S.T.A.L.K.E.R.: Shadow of Chernobyl 1.0006 and earlier allows remote attackers to cause a denial of service (crash) via a long nickname, which triggers an exception.
network
low complexity
stalker-game CWE-20
5.0