CVE-2004-1395

Monolith Productions Contract Jack - Denial of Service

Title source: rule

Description

The Lithtech engine, as used in (1) Contract Jack 1.1 and earlier, (2) No one lives forever 2 1.3 and earlier, (3) Tron 2.0 1.042 and earlier, (4) F.E.A.R. (First Encounter Assault and Recon), and possibly other games, allows remote attackers to cause a denial of service (connection refused) via a UDP packet that causes recvfrom to generate a return code that causes the listening loop to exit, as demonstrated using zero byte packets or packets between 8193 and 12280 bytes, which result in conditions that are not "Operation would block."

Exploits (1)

exploitdb SCANNER VERIFIED
by Luigi Auriemma · cdoswindows
https://www.exploit-db.com/exploits/683

Scores

EPSS 0.1412
EPSS Percentile 94.4%

Details

Status published
Products (5)
monolith_productions/contract_jack 1.1
monolith_productions/no_one_lives_forever_2 1.0.004
monolith_productions/no_one_lives_forever_2 1.3
monolith_productions/tron 2.0.1.0
monolith_productions/tron 2.0.1.42
Published Dec 31, 2004
Tracked Since Feb 18, 2026