CVE-2007-4257

Multiple buffer overflows in Live for Speed (LFS) S1 and S2 allow user-assisted remote attackers to execute arbitrary code via (1) a .spr file (single player replay file) containing a long user name or (2) a .ply file containing a long number plate string, different vectors than CVE-2007-4140.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:lfs:live_for_speed:sp1:*:*:*:*:*:*:*
cpe:2.3:a:lfs:live_for_speed:sp2:*:*:*:*:*:*:*

History

21 Nov 2024, 00:35

Type Values Removed Values Added
References () http://osvdb.org/46768 - () http://osvdb.org/46768 -
References () http://osvdb.org/46769 - () http://osvdb.org/46769 -
References () http://www.securityfocus.com/bid/25206 - () http://www.securityfocus.com/bid/25206 -
References () http://www.securityfocus.com/bid/25208 - () http://www.securityfocus.com/bid/25208 -
References () https://www.exploit-db.com/exploits/4262 - () https://www.exploit-db.com/exploits/4262 -
References () https://www.exploit-db.com/exploits/4263 - () https://www.exploit-db.com/exploits/4263 -

Information

Published : 2007-08-08 23:17

Updated : 2024-11-21 00:35


NVD link : CVE-2007-4257

Mitre link : CVE-2007-4257

CVE.ORG link : CVE-2007-4257


JSON object : View

Products Affected

lfs

  • live_for_speed