Soldier of Fortune II 1.02x and 1.03 allows remote attackers to cause a denial of service (server crash) via a large ID value in the ignore command, which is used as an array index and causes an out-of-bounds operation.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Soldier_of_fortune_2 | Raven_software | 1.02 (including) | 1.02 (including) |
Soldier_of_fortune_2 | Raven_software | 1.03 (including) | 1.03 (including) |