CVE-2006-3400

Quake 3 Engine - Stack-Based Buffer Overflow in CG_ServerCommand

Title source: llm

Description

Stack-based buffer overflow in the CG_ServerCommand function in Quake 3 Engine as used by Soldier of Fortune 2 (SOF2MP) GOLD 1.03 allows remote attackers to cause a denial of service and possibly execute code by sending a long command from the server.

Exploits (1)

exploitdb WORKING POC VERIFIED
by RunningBon · c++doswindows
https://www.exploit-db.com/exploits/1976

Scores

EPSS 0.1166
EPSS Percentile 93.7%

Details

Status published
Products (4)
id_software/quake_3_engine 1.32b
id_software/quake_3_engine 1.32c
id_software/quake_3_engine icculus_812
raven_software/soldier_of_fortune_2 1.03
Published Jul 06, 2006
Tracked Since Feb 18, 2026