>> Empire Server "client_cmd()" Function Remote Denial of Service Vulnerability
Title : Empire Server "client_cmd()" Function Remote Denial of Service Vulnerability VUPEN ID : VUPEN/ADV-2006-1798 CVE ID : CVE-2006-2393
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-05-15
Technical Description
A vulnerability has been identified in Empire Server, which could be exploited by attackers to cause a denial of service. This flaw is due to an error in the "client_cmd()" [lib/player/login.c] function that does not properly validate user-supplied text strings, which could be exploited by remote attackers to crash a vulnerable server, creating a denial of service condition.