OSVDB ID: 16933

Title: Stronghold 2 Malformed Nickname Join DoS

Info

Disclosure

May 30, 2005

Discovery

Unknown

Dates

Exploit

May 30, 2005

Solution

Unknown

Description

StrongHold 2 contains a flaw that may allow a remote denial of service. The issue is triggered when an attacker sends a specially crafted Nickname which is padded with a large number of bytes to the server. The STLport Library on the server fails to properly allocate memory, and will result in loss of availability for the application.

Classification

Location: Remote/Network Access Required
Attack Type: Denial of Service
Impact: Loss of Availability
Exploit: Exploit Available
Disclosure: OSVDB Verified

Solution

Currently, there are no known upgrades, patches, or workarounds available to correct this issue.

Products

FireFly Studios

Stronghold 2

1.2
1.1
1.0
0.x

References

Credit

  • Luigi Auriemma - aluigiBrand New Doo Dooautistici.org - http://aluigi.altervista.org


Direct URL: http://osvdb.org/36218