Image Space rFactor 1.250 and earlier allows remote attackers to...
Vulnerability Description
Image Space rFactor 1.250 and earlier allows remote attackers to cause a denial of service (daemon crash) via (1) an ID 0x30 packet, (2) an ID 0x38 packet, and an invalid 13-bit integer in (3) an ID 0x60 packet and (4) an ID 0x68 packet; and a denial of service (UDP port block) via (5) an ID 0x20 packet and (6) an ID 0x28 packet.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2007-4445
Credits & Attribution
No credits recorded in the NVD database.
References
- http://forum.racesimcentral.com/showthread.php?t=298659
- http://www.securityfocus.com/bid/25358
- http://securityreason.com/securityalert/3037
- http://aluigi.org/poc/rfactorx.zip
- http://www.rfactor.net/?page=news_09-26_1255
- https://exchange.xforce.ibmcloud.com/vulnerabilities/36095
- https://exchange.xforce.ibmcloud.com/vulnerabilities/36094
- http://www.securityfocus.com/archive/1/480921/100/200/threaded
- http://www.securityfocus.com/archive/1/480591/100/200/threaded
- http://www.securityfocus.com/archive/1/477023/100/0/threaded
- http://secunia.com/advisories/26526
Affected Vendor
rfactor
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.