« Volver al listado

CVE-2008-7011

Estado: ModificadaMedia (4)—

The Unreal engine, as used in Unreal Tournament 3 1.3, Unreal Tournament 2003 and 2004, Dead Man's Hand, Pariah, WarPath, Postal2, and Shadow Ops, allows remote authenticated users to cause a denial of service (server exit) via multiple file downloads from the server, which triggers an assertion failure when the Closing flag in UnChan.cpp is set.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (6)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2008-7011",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 4,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
          "authentication": "SINGLE",
          "integrityImpact": "NONE",
          "accessComplexity": "LOW",
          "availabilityImpact": "PARTIAL",
          "confidentialityImpact": "NONE"
        },
        "acInsufInfo": false,
        "impactScore": 2.9,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 8,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2009-08-19T10:30:00.563",
  "references": [
    {
      "url": "http://archives.neohapsis.com/archives/fulldisclosure/2008-09/0321.html",
      "tags": [
        "Exploit"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://osvdb.org/48293",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/archive/1/496399/100/0/threaded",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/bid/31205",
      "tags": [
        "Exploit"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://archives.neohapsis.com/archives/fulldisclosure/2008-09/0321.html",
      "tags": [
        "Exploit"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://osvdb.org/48293",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/archive/1/496399/100/0/threaded",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/31205",
      "tags": [
        "Exploit"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-399"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "The Unreal engine, as used in Unreal Tournament 3 1.3, Unreal Tournament 2003 and 2004, Dead Man's Hand, Pariah, WarPath, Postal2, and Shadow Ops, allows remote authenticated users to cause a denial of service (server exit) via multiple file downloads from the server, which triggers an assertion failure when the Closing flag in UnChan.cpp is set."
    },
    {
      "lang": "es",
      "value": "El motor de Unreal, el utilizado en Unreal Tournament v3 1.3, Unreal Tournament 2003 y 2004, Dead Man's Hand, Pariah, WarPath, Postal2, y Shadow Ops, permite a usuarios remotos autenticados producir una denegación de servicio (salida de servidor) a través de múltiples descargas de ficheros desde el servidor, lo que inicia un fallo de aserción cuando la marca (flag) de cierre en UnChan.cpp esta activado."
    }
  ],
  "lastModified": "2026-06-16T23:03:25.253",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:digital_extreme:pariah:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "6587F764-5D9B-4D59-8038-D8088ECC3EA1"
            },
            {
              "criteria": "cpe:2.3:a:epic_games:unreal_tournament:3:1.3:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "9AB57FD3-DF3A-4214-9A4E-BBD05E7D72D1"
            },
            {
              "criteria": "cpe:2.3:a:epic_games:unreal_tournament:2003:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "0A1BC445-F213-4032-89ED-C27B3526D2B0"
            },
            {
              "criteria": "cpe:2.3:a:epic_games:unreal_tournament:2004:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "AD75F3DD-8EB1-4BE0-B6DF-E4DC0D96B7E8"
            },
            {
              "criteria": "cpe:2.3:a:groove_games:warpath:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "3DD522D7-62CF-4912-94F0-98425CE7E453"
            },
            {
              "criteria": "cpe:2.3:a:human_head_studios:dead_mans_hand:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "B4C4B092-731F-4E66-8EA3-977EF1AF165F"
            },
            {
              "criteria": "cpe:2.3:a:red_mercury:shadow_ops:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "C1D034C6-5A04-46F2-97B6-70C21320B546"
            },
            {
              "criteria": "cpe:2.3:a:whiptail_interactive:postal:2:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "ACACD3D7-A342-45A9-B4F2-4121F5DF7E46"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "cve@mitre.org"
}