CVE-2007-5249
Estado: ModificadaMedia (4.3)—
Multiple buffer overflows in the logging function in the Unreal engine, as used by America's Army and America's Army Special Forces 2.8.2 and earlier, when Punkbuster (PB) is enabled, allow remote attackers to cause a denial of service (daemon crash) via a long (1) PB_Y packet to the YPG server on UDP port 1716 or (2) PB_U packet to UCON on UDP port 1716, different vectors than CVE-2007-4442. NOTE: this issue might be in Punkbuster itself, but there are insufficient details to be certain.
CVSS
- Versión: 2.0
- Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P
- Puntuación base: 4.3
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 1.65%
- Percentil entre todas las CVEs puntuadas: 76
- Fecha de la puntuación: 6/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (2)
CWE
- CWE-119
Referencias
- http://aluigi.altervista.org/adv/aaboompb-adv.txt
- http://aluigi.org/poc/aaboompb.zip
- http://secunia.com/advisories/27015
- http://securityreason.com/securityalert/3193
- http://www.securityfocus.com/archive/1/481227/100/0/threaded
- https://exchange.xforce.ibmcloud.com/vulnerabilities/36897
- http://aluigi.altervista.org/adv/aaboompb-adv.txt
- http://aluigi.org/poc/aaboompb.zip
- http://secunia.com/advisories/27015
- http://securityreason.com/securityalert/3193
- http://www.securityfocus.com/archive/1/481227/100/0/threaded
- https://exchange.xforce.ibmcloud.com/vulnerabilities/36897
JSON original (NVD)
Mostrar
{
"id": "CVE-2007-5249",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 4.3,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:P",
"authentication": "NONE",
"integrityImpact": "NONE",
"accessComplexity": "MEDIUM",
"availabilityImpact": "PARTIAL",
"confidentialityImpact": "NONE"
},
"acInsufInfo": false,
"impactScore": 2.9,
"baseSeverity": "MEDIUM",
"obtainAllPrivilege": false,
"exploitabilityScore": 8.6,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"affected": [
{
"source": "cve@mitre.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2007-10-06T17:17:00.000",
"references": [
{
"url": "http://aluigi.altervista.org/adv/aaboompb-adv.txt",
"tags": [
"Exploit"
],
"source": "cve@mitre.org"
},
{
"url": "http://aluigi.org/poc/aaboompb.zip",
"tags": [
"Exploit"
],
"source": "cve@mitre.org"
},
{
"url": "http://secunia.com/advisories/27015",
"tags": [
"Vendor Advisory"
],
"source": "cve@mitre.org"
},
{
"url": "http://securityreason.com/securityalert/3193",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/archive/1/481227/100/0/threaded",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/36897",
"source": "cve@mitre.org"
},
{
"url": "http://aluigi.altervista.org/adv/aaboompb-adv.txt",
"tags": [
"Exploit"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://aluigi.org/poc/aaboompb.zip",
"tags": [
"Exploit"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://secunia.com/advisories/27015",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://securityreason.com/securityalert/3193",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/archive/1/481227/100/0/threaded",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/36897",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-119"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Multiple buffer overflows in the logging function in the Unreal engine, as used by America's Army and America's Army Special Forces 2.8.2 and earlier, when Punkbuster (PB) is enabled, allow remote attackers to cause a denial of service (daemon crash) via a long (1) PB_Y packet to the YPG server on UDP port 1716 or (2) PB_U packet to UCON on UDP port 1716, different vectors than CVE-2007-4442. NOTE: this issue might be in Punkbuster itself, but there are insufficient details to be certain."
},
{
"lang": "es",
"value": "Múltiples desbordamientos de búfer en la función logging en el motor Unreal, utilizado en America's Army y America's Army Special Forces 2.8.2 y anteriores, cuando Punkbuster (PB) está activado, permite a atacantes remotos provocar denegación de servicio (caida de demonio) a través de un (1) paquete PB_Y grande en el servidor YPG sobre UDP puerto 1716 o (2) paquete PB_U en UCON sobre UDP puerto 1716, vectores diferentes que CVE-2007-4442. NOTA: este asunto podría estar en Punkbuster por si mismo, pero hay detalles insuficientes para estar seguros."
}
],
"lastModified": "2026-06-16T22:45:44.427",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:americasarmy:america\\'s_army:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "6A9CF443-569C-4B00-9727-28B9F8596712",
"versionEndIncluding": "2.8.2"
},
{
"criteria": "cpe:2.3:a:americasarmy:america\\'s_army_special_forces:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "211C4D46-83C1-4FBE-88B8-A5F113BAA6A9",
"versionEndIncluding": "2.8.2"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "cve@mitre.org"
}