CVE-2012-1189

TORCS < 1.3.3 and Speed Dreams - Stack-based Buffer Overflow via Long File Name in XML Configuration

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2012-1189. PoCs published by Andres Gomez & David Mora.

AI-analyzed exploit summary This exploit leverages a buffer overflow vulnerability in TORCS <= 1.3.2 to achieve remote code execution by crafting a malicious XML file that triggers a SEH bypass and executes shellcode.

Description

Stack-based buffer overflow in modules/graphic/ssgraph/grsound.cpp in The Open Racing Car Simulator (TORCS) before 1.3.3 and Speed Dreams allows user-assisted remote attackers to execute arbitrary code via a long file name in an engine sample attribute in an xml configuration file.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Andres Gomez & David Mora · clocalwindows
https://www.exploit-db.com/exploits/18471

This exploit leverages a buffer overflow vulnerability in TORCS <= 1.3.2 to achieve remote code execution by crafting a malicious XML file that triggers a SEH bypass and executes shellcode.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: TORCS <= 1.3.2
No auth needed
Prerequisites: Access to the target system to replace the XML configuration file · Target system running TORCS <= 1.3.2
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (6)

Core 6
Core References
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/18471
Exploit mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2012/02/18/2
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/79372
Exploit mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2012/03/05/18

Scores

EPSS 0.0959
EPSS Percentile 94.8%

Details

CWE
CWE-119
Status published
Products (6)
bernhard_wymann/torcs 1.2.3
bernhard_wymann/torcs 1.2.4
bernhard_wymann/torcs 1.3.0
bernhard_wymann/torcs 1.3.1
bernhard_wymann/torcs < 1.3.2
speed-dreams/speed_dreams
Published Oct 08, 2012
Tracked Since Feb 18, 2026