CVE-2006-1010
crossfire - buffer overflow
EPSS 17.3%
Description
Buffer overflow in socket/request.c in CrossFire before 1.9.0, when oldsocketmode is enabled, allows remote attackers to cause a denial of service (segmentation fault) and possibly execute code by sending the server a large request.
How to fix CVE-2006-1010
To remediate CVE-2006-1010, upgrade the affected package to a fixed version below.
- Debian/crossfire—upgrade to 1.9.0-1 or later
- Debian/crossfire—upgrade to 1.1.0-1woody1 or later
Is CVE-2006-1010 being exploited?
Moderate — EPSS is 17.3%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (2)
- from 0, < 1.9.0-1
- from 0, < 1.1.0-1woody1