Security Advisory

CVE-2006-1618

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2006-04-05 10:00:00
Last updated 2024-08-07 17:19:48
Assigner mitre
State PUBLISHED

Description

Format string vulnerability in the (1) Con_message and (2) conPrintf functions in con_main.c in Doomsday engine 1.8.6 allows remote attackers to execute arbitrary code via format string specifiers in an argument to the JOIN command, and possibly other command arguments.