The Scorched 3D server component has been reported prone to multiple memory corruption vulnerabilities. One of the issues is reportedly a heap-based buffer overrun that is exposed when a client supplies an excessive number of format string characters in the server chat box text input field. Other unspecified issues related to bounds checking were also reported. These issues could be exploited to crash the server or potentially execute arbitrary code.
The Scorched 3D server component has been reported prone to multiple memory corruption vulnerabilities. One of the issues is reportedly a heap-based buffer overrun that is exposed when a client supplies an excessive number of format string characters in the server chat box text input field. Other unspecified issues related to bounds checking were also reported. These issues could be exploited to crash the server or potentially execute arbitrary code.