vphysics.dll in Counter-Strike: Global Offensive before 1.37.1.1 allows remote attackers to achieve code execution or denial of service by creating a gaming server and inviting a victim to this server, because a crafted map is mishandled during a memset call.
References
Configurations
History
21 Nov 2024, 04:29
Type | Values Removed | Values Added |
---|---|---|
References | () http://packetstormsecurity.com/files/154705/Counter-Strike-Global-Offensive-Code-Execution-Denial-Of-Service.html - | |
References | () https://blog.counter-strike.net/index.php/category/updates/ - Release Notes | |
References | () https://github.com/bi7s/CVE/blob/master/CVE-2019-15943/README.md - Exploit, Third Party Advisory |
Information
Published : 2019-09-19 12:15
Updated : 2024-11-21 04:29
NVD link : CVE-2019-15943
Mitre link : CVE-2019-15943
CVE.ORG link : CVE-2019-15943
JSON object : View
Products Affected
valvesoftware
- counter-strike\
CWE
CWE-787
Out-of-bounds Write