CVE-2008-3410

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
31/07/2008
Last modified:
09/04/2025

Description

Unreal Tournament 3 1.3beta4 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a UDP packet in which the value of a certain size field is greater than the total packet length, aka attack 2 in ut3mendo.c.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:epic_games:unreal_tournament_3:*:beta_4:*:*:*:*:*:* 1.3 (including)
cpe:2.3:a:epic_games:unreal_tournament_3:1.1:*:*:*:*:*:*:*
cpe:2.3:a:epic_games:unreal_tournament_3:1.2:*:*:*:*:*:*:*