CVE-2009-3924

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
10/11/2009
Last modified:
09/04/2025

Description

Buffer overflow in pbsv.dll, as used in Soldier of Fortune II and possibly other applications when Even Balance PunkBuster 1.728 or earlier is enabled, allows remote attackers to cause a denial of service (application server crash) and possibly execute arbitrary code via a long restart packet.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:raven_software:soldier_of_fortune_2:*:*:*:*:*:*:*:*
cpe:2.3:a:punkbuster:punkbuster:*:*:*:*:*:*:*:* 1.728 (including)
cpe:2.3:a:punkbuster:punkbuster:1.272:*:*:*:*:*:*:*
cpe:2.3:a:punkbuster:punkbuster:1.457:*:*:*:*:*:*:*
cpe:2.3:a:punkbuster:punkbuster:1.458:*:*:*:*:*:*:*
cpe:2.3:a:punkbuster:punkbuster:1.641:*:*:*:*:*:*:*
cpe:2.3:a:punkbuster:punkbuster:1.642:*:*:*:*:*:*:*
cpe:2.3:a:punkbuster:punkbuster:1.718:*:*:*:*:*:*:*
cpe:2.3:a:punkbuster:punkbuster:1.723:*:*:*:*:*:*:*