CVE-2006-1593

Severity CVSS v4.0:
Pending analysis
Type:
CWE-399 Resource Management Errors
Publication date:
03/04/2006
Last modified:
03/04/2025

Description

The (1) ZD_MissingPlayer, (2) ZD_UseItem, and (3) ZD_LoadNewClientLevel functions in sv_main.cpp for (a) Zdaemon 1.08.01 and (b) X-Doom allows remote attackers to cause a denial of service (crash) via an invalid player slot or item number, which causes an invalid memory access, possibly due to an invalid array index.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:x-doom:x-doom:1.06.07:*:*:*:*:*:*:*
cpe:2.3:a:zdaemon:zdaemon:*:*:*:*:*:*:*:* 1.08.01 (including)