CVE-2011-1412
04.08.2011, 02:45
sys/sys_unix.c in the ioQuake3 engine on Unix and Linux, as used in World of Padman 1.5.x before 1.5.1.1 and OpenArena 0.8.x-15 and 0.8.x-16, allows remote game servers to execute arbitrary commands via shell metacharacters in a long fs_game variable.Enginsight
| Vendor | Product | Version |
|---|---|---|
| ioquake3 | ioquake3_engine | * |
| openarena | openarena | 0.8.x-15:x |
| openarena | openarena | 0.8.x-16:x |
| worldofpadman | world_of_padman | 1.5 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| ioquake3 |
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| openarena |
|
Common Weakness Enumeration
References