Saturday, May 28, 2005

Terminator 3: War of the Machines Two Vulnerabilities

Rated: Highly critical

Luigi Auriemma has reported two vulnerabilities in Terminator 3: War of the Machines, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system.

1) A boundary error in the handling of cd-key hashes can be exploited to cause a buffer overflow by sending an overly long cd-key hash.

Successful exploitation may allow execution of arbitrary code.

2) An error in the handling of overly long nicknames can be exploited to crash a vulnerable server by joining with an overly long nickname.

The vulnerabilities have been reported in versions 1.16 and prior.

Host games on trusted networks only.

Reference: Secunia

