ID:4907 - Exploit for Input validation error in Game Networking Sockets - CVE-2020-6019

 
Main Vulnerability Database Exploits ID:4907 - Exploit for Input validation error in Game Networking Sockets - CVE-2020-6019

ID:4907 - Exploit for Input validation error in Game Networking Sockets - CVE-2020-6019

Published: December 11, 2020


Vulnerability identifier: #VU48929
Vulnerability risk: Medium
CVE-ID: CVE-2020-6019
CWE-ID: CWE-20
Exploitation vector: Remote access
Vulnerable software:
Game Networking Sockets

Link to public exploit:


Vulnerability description

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to insufficient validation of inlined statistic messages within the CConnectionTransportUDPBase::Received_Data() function. A remote attacker can pass specially crafted input to the gaming server and perform a denial of service (DoS) attack.


Remediation

Install updates from vendor's website.