CVE Vulnerabilities

CVE-2004-0278

Published: Nov 23, 2004 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Ratbag game engine, as used in products such as Dirt Track Racing, Leadfoot, and World of Outlaws Spring Cars, allows remote attackers to cause a denial of service (CPU consumption) via a TCP packet that specifies the length of data to read and then sends a second TCP packet that contains less data than specified, which causes Ratbag to repeatedly check the socket for more data.

Affected Software

NameVendorStart VersionEnd Version
Dirt_track_racingRatbag1.0.3 (including)1.0.3 (including)
Dirt_track_racingRatbag2.0 (including)2.0 (including)
Dirt_track_racing_australiaRatbag**
Dirt_track_racing_sprint_carsRatbag**
LeadfootRatbag**
World_of_outlaws_sprint_carsRatbag**

References