Vulnerability Description
The SV_CheckForDuplicateNames function in Valve Software Half-Life CSTRIKE Dedicated Server 1.1.1.0 and earlier allows remote authenticated users to cause a denial of service (infinite loop and daemon hang) via a certain connection string to UDP port 27015 that represents "absence of player informations," a related issue to CVE-2006-0734.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Valve Software | Half-Life Cstrike Dedicated Server | <= 1.1.1.0 |
References
- http://aluigi.altervista.org/adv/csdos.txt
- http://packetstormsecurity.org/0304-exploits/hl-headnut.cExploit
- http://aluigi.altervista.org/adv/csdos.txt
- http://packetstormsecurity.org/0304-exploits/hl-headnut.cExploit
FAQ
What is CVE-2003-1325?
CVE-2003-1325 is a vulnerability with a CVSS score of 5.2 (MEDIUM). The SV_CheckForDuplicateNames function in Valve Software Half-Life CSTRIKE Dedicated Server 1.1.1.0 and earlier allows remote authenticated users to cause a denial of service (infinite loop and daemon...
How severe is CVE-2003-1325?
CVE-2003-1325 has been rated MEDIUM with a CVSS base score of 5.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2003-1325?
Check the references section above for vendor advisories and patch information. Affected products include: Valve Software Half-Life Cstrike Dedicated Server.