CVE-2003-1432
Severity CVSS v4.0:
Pending analysis
Type:
CWE-94
Code Injection
Publication date:
31/12/2003
Last modified:
03/04/2025
Description
Epic Games Unreal Engine 226f through 436 allows remote attackers to cause a denial of service (CPU consumption or crash) and possibly execute arbitrary code via (1) a packet with a negative size value, which is treated as a large positive number during memory allocation, or (2) a negative size value in a package file.
Impact
Base Score 2.0
10.00
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:epic_games:unreal_engine:226f:*:*:*:*:*:*:* | ||
cpe:2.3:a:epic_games:unreal_engine:433:*:*:*:*:*:*:* | ||
cpe:2.3:a:epic_games:unreal_engine:436:*:*:*:*:*:*:* | ||
cpe:2.3:a:epic_games:unreal_tournament_2003:2199_linux:*:*:*:*:*:*:* | ||
cpe:2.3:a:epic_games:unreal_tournament_2003:2199_win32:*:*:*:*:*:*:* | ||
cpe:2.3:a:epic_games:unreal_tournament_2003:demo_version_2206_linux:*:*:*:*:*:*:* | ||
cpe:2.3:a:epic_games:unreal_tournament_2003:demo_version_2206_win32:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://archives.neohapsis.com/archives/bugtraq/2003-02/0063.html
- http://archives.neohapsis.com/archives/bugtraq/2003-02/0142.html
- http://archives.neohapsis.com/archives/bugtraq/2003-05/0142.html
- http://www.securityfocus.com/bid/6770
- http://www.securityfocus.com/bid/6772
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11302
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11305
- https://exchange.xforce.ibmcloud.com/vulnerabilities/12012
- http://archives.neohapsis.com/archives/bugtraq/2003-02/0063.html
- http://archives.neohapsis.com/archives/bugtraq/2003-02/0142.html
- http://archives.neohapsis.com/archives/bugtraq/2003-05/0142.html
- http://www.securityfocus.com/bid/6770
- http://www.securityfocus.com/bid/6772
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11302
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11305
- https://exchange.xforce.ibmcloud.com/vulnerabilities/12012