CVE-2004-0158

lbreakout2 - Buffer Overflow via Large HOME Environment Variable

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2004-0158. PoCs published by Li0n7.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in LBreakout2 < 2.4beta-2 by manipulating the HOME environment variable to execute arbitrary shellcode. It includes both a targeted attack mode (with a specified return address) and a brute-force mode to guess the correct return address.

Description

Buffer overflow in lbreakout2 allows local users to gain 'games' group privileges via a large HOME environment variable to (1) editor.c, (2) theme.c, (3) manager.c, (4) config.c, (5) game.c, (6) levels.c, or (7) main.c.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Li0n7 · clocallinux
https://www.exploit-db.com/exploits/23738

This exploit targets a buffer overflow vulnerability in LBreakout2 < 2.4beta-2 by manipulating the HOME environment variable to execute arbitrary shellcode. It includes both a targeted attack mode (with a specified return address) and a brute-force mode to guess the correct return address.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: LBreakout2 < 2.4beta-2
No auth needed
Prerequisites: Local access to the target system · LBreakout2 < 2.4beta-2 installed · Ability to set environment variables
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (5)

Core 5
Core References
Patch, Vendor Advisory vendor-advisory x_refsource_debian
http://www.debian.org/security/2004/dsa-445
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/15229
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=107755821705356&w=2
Exploit, Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/9712

Scores

EPSS 0.0089
EPSS Percentile 54.7%

Details

Status published
Products (8)
lgames/lbreakout2 2.0
lgames/lbreakout2 2.0.1
lgames/lbreakout2 2.1
lgames/lbreakout2 2.1.1
lgames/lbreakout2 2.1.2
lgames/lbreakout2 2.2
lgames/lbreakout2 2.2.1
lgames/lbreakout2 2.2.2
Published Mar 29, 2004
Tracked Since Feb 18, 2026