HIGH · 7.6

CVE-2006-2236

Buffer overflow in the Quake 3 Engine, as used by (1) ET 2.60, (2) Return to Castle Wolfenstein 1.41, and (3) Quake III Arena 1.32b allows remote attackers to execute arbitrary commands via a long rem...

Vulnerability Description

Buffer overflow in the Quake 3 Engine, as used by (1) ET 2.60, (2) Return to Castle Wolfenstein 1.41, and (3) Quake III Arena 1.32b allows remote attackers to execute arbitrary commands via a long remapShader command.

CVSS Score

7.6

HIGH

AV:N/AC:H/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
Id SoftwareQuake 3 Arena1.32b
Id SoftwareQuake 3 Engine1.32b
Id SoftwareReturn To Castle Wolfenstein1.41
Id SoftwareWolfenstein Enemy Territory2.60

References

FAQ

What is CVE-2006-2236?

CVE-2006-2236 is a vulnerability with a CVSS score of 7.6 (HIGH). Buffer overflow in the Quake 3 Engine, as used by (1) ET 2.60, (2) Return to Castle Wolfenstein 1.41, and (3) Quake III Arena 1.32b allows remote attackers to execute arbitrary commands via a long rem...

How severe is CVE-2006-2236?

CVE-2006-2236 has been rated HIGH with a CVSS base score of 7.6/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2006-2236?

Check the references section above for vendor advisories and patch information. Affected products include: Id Software Quake 3 Arena, Id Software Quake 3 Engine, Id Software Return To Castle Wolfenstein, Id Software Wolfenstein Enemy Territory.