Record summary

CVE-2012-1189 has a selected CVSS score of 9.3; EIP currently links 1 catalogued exploit.

Description

Stack-based buffer overflow in modules/graphic/ssgraph/grsound.cpp in The Open Racing Car Simulator (TORCS) before 1.3.3 and Speed Dreams allows user-assisted remote attackers to execute arbitrary code via a long file name in an engine sample attribute in an xml configuration file.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBTORCS 1.3.2 - '.xml' File Buffer Overflow /SafeSEH EvasionExploitDB exploitby Andres Gomez & David MoraNot analyzed1 file
ExploitDB

PoC details

References

7