// For flags

CVE-2008-7011

Unreal Engine - 'UnChan.cpp' Failed Assertion Remote Denial of Service

Severity Score

4.0
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

3
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The Unreal engine, as used in Unreal Tournament 3 1.3, Unreal Tournament 2003 and 2004, Dead Man's Hand, Pariah, WarPath, Postal2, and Shadow Ops, allows remote authenticated users to cause a denial of service (server exit) via multiple file downloads from the server, which triggers an assertion failure when the Closing flag in UnChan.cpp is set.

El motor de Unreal, el utilizado en Unreal Tournament v3 1.3, Unreal Tournament 2003 y 2004, Dead Man's Hand, Pariah, WarPath, Postal2, y Shadow Ops, permite a usuarios remotos autenticados producir una denegación de servicio (salida de servidor) a través de múltiples descargas de ficheros desde el servidor, lo que inicia un fallo de aserción cuando la marca (flag) de cierre en UnChan.cpp esta activado.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
Single
Confidentiality
None
Integrity
None
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2008-09-16 First Exploit
  • 2009-08-18 CVE Reserved
  • 2009-08-19 CVE Published
  • 2024-03-29 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-399: Resource Management Errors
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Digital Extreme
Search vendor "Digital Extreme"
Pariah
Search vendor "Digital Extreme" for product "Pariah"
*-
Affected
Epic Games
Search vendor "Epic Games"
Unreal Tournament
Search vendor "Epic Games" for product "Unreal Tournament"
3
Search vendor "Epic Games" for product "Unreal Tournament" and version "3"
1.3
Affected
Epic Games
Search vendor "Epic Games"
Unreal Tournament
Search vendor "Epic Games" for product "Unreal Tournament"
2003
Search vendor "Epic Games" for product "Unreal Tournament" and version "2003"
-
Affected
Epic Games
Search vendor "Epic Games"
Unreal Tournament
Search vendor "Epic Games" for product "Unreal Tournament"
2004
Search vendor "Epic Games" for product "Unreal Tournament" and version "2004"
-
Affected
Groove Games
Search vendor "Groove Games"
Warpath
Search vendor "Groove Games" for product "Warpath"
*-
Affected
Human Head Studios
Search vendor "Human Head Studios"
Dead Mans Hand
Search vendor "Human Head Studios" for product "Dead Mans Hand"
*-
Affected
Red Mercury
Search vendor "Red Mercury"
Shadow Ops
Search vendor "Red Mercury" for product "Shadow Ops"
*-
Affected
Whiptail Interactive
Search vendor "Whiptail Interactive"
Postal
Search vendor "Whiptail Interactive" for product "Postal"
2
Search vendor "Whiptail Interactive" for product "Postal" and version "2"
-
Affected