CVE-2006-1101
Sauerbraten Cube - Denial of Service
Title source: ruleDescription
The (1) sgetstr and (2) getint functions in Sauerbraten 2006_02_28, as derived from the Cube engine, allow remote attackers to cause a denial of service (segmentation fault) via long streams of input data that trigger an out-of-bounds read, as demonstrated using SV_EXT tag data in the Cube engine, which is not properly handled by getint.
Exploits (2)
exploitdb
WORKING POC
VERIFIED
by Luigi Auriemma · cdoswindows
https://www.exploit-db.com/exploits/1560
References (11)
Scores
EPSS
0.4368
EPSS Percentile
97.5%
Classification
Status
draft
Affected Products (2)
sauerbraten/cube
sauerbraten/sauerbraten
Timeline
Published
Mar 09, 2006
Tracked Since
Feb 18, 2026