CVE-2019-15943

HIGH

Counter-Strike: Global Offensive <1.37.1.1 - RCE/DoS

Title source: llm
STIX 2.1

Description

vphysics.dll in Counter-Strike: Global Offensive before 1.37.1.1 allows remote attackers to achieve code execution or denial of service by creating a gaming server and inviting a victim to this server, because a crafted map is mishandled during a memset call.

Exploits (1)

exploitdb WRITEUP
by bi7s · doswindows
https://www.exploit-db.com/exploits/47454

References (3)

Core 3

Scores

CVSS v3 8.8
EPSS 0.2259
EPSS Percentile 95.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-787
Status published
Products (1)
valvesoftware/counter-strike\ < 1.37.1.1
Published Sep 19, 2019
Tracked Since Feb 18, 2026