CVE-2006-6664

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
20/12/2006
Last modified:
09/04/2025

Description

Format string vulnerability in Marathon Aleph One before 0.17.1 and 2006-12-17 might allow remote attackers to cause a denial of service (application crash) or execute arbitrary code via format string specifiers in the TopLevelLogger::logMessageV function in Misc/Logging.cpp. NOTE: some details were obtained from third party information.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:marathon_aleph_one:marathon_aleph_one:*:*:*:*:*:*:*:* 0.17 (including)
cpe:2.3:a:marathon_aleph_one:marathon_aleph_one:*:*:*:*:*:*:*:* 2006-12-02 (including)