jedi-academy/codemp/cgame
Jonathan Gray 832b4342a8 CVE-2006-2236 Buffer overflow in the Quake 3 Engine
CVE-2006-2236
Buffer overflow in the Quake 3 Engine, as used by (1) ET 2.60,
(2) Return to Castle Wolfenstein 1.41, and (3) Quake III Arena 1.32b
allows remote attackers to execute arbitrary commands via a long
remapShader command.

from Thilo Schulz in ioquake3
svn 765 git d21411452ef32b86c0b79ddcaf49221701dcdb07

Add string length checking to function COM_StripExtension. This fixes
the R_RemapShader buffer overflow exploit that can be found here:
http://milw0rm.com/exploits/1750
2013-05-07 22:18:45 +10:00
..
animtable.h ditch dos style newlines 2013-04-23 15:21:39 +10:00
asm2mak.cfg Jedi Academy Release 2013-04-04 17:35:38 -05:00
cg_consolecmds.c fix #includes to compile on non windows without pch 2013-04-25 23:51:46 +10:00
cg_draw.c stricmp -> Q_stricmp 2013-04-25 23:51:55 +10:00
cg_drawtools.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
cg_effects.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
cg_ents.c fix #includes to compile on non windows without pch 2013-04-25 23:51:46 +10:00
cg_event.c remove the use of 'typedef enum' without an indentifier 2013-05-02 13:47:50 +10:00
cg_info.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
cg_light.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
cg_lights.h ditch dos style newlines 2013-04-23 15:21:39 +10:00
cg_local.h remove the use of 'typedef enum' without an indentifier 2013-05-02 13:47:50 +10:00
cg_localents.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
cg_main.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
cg_marks.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
cg_media.h Jedi Academy Release 2013-04-04 17:35:38 -05:00
cg_newDraw.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
cg_playeranimate.c Jedi Academy Release 2013-04-04 17:35:38 -05:00
cg_players.c CVE-2006-2236 Buffer overflow in the Quake 3 Engine 2013-05-07 22:18:45 +10:00
cg_playerstate.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
cg_predict.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
cg_public.h ditch dos style newlines 2013-04-23 15:21:39 +10:00
cg_saga.c fix #includes to compile on non windows without pch 2013-04-25 23:51:46 +10:00
cg_scoreboard.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
cg_servercmds.c fix #includes to compile on non windows without pch 2013-04-25 23:51:46 +10:00
cg_snapshot.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
cg_strap.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
cg_syscalls.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
cg_turret.c fix #includes to compile on non windows without pch 2013-04-25 23:51:46 +10:00
cg_view.c powf -> Q_powf 2013-04-25 23:51:57 +10:00
cg_weaponinit.c CVE-2006-2236 Buffer overflow in the Quake 3 Engine 2013-05-07 22:18:45 +10:00
cg_weapons.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
cgame.bat Jedi Academy Release 2013-04-04 17:35:38 -05:00
cgame.q3asm Jedi Academy Release 2013-04-04 17:35:38 -05:00
fx_blaster.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
fx_bowcaster.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
fx_bryarpistol.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
fx_demp2.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
fx_disruptor.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
fx_flechette.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
fx_force.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
fx_heavyrepeater.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
fx_local.h ditch dos style newlines 2013-04-23 15:21:39 +10:00
fx_rocketlauncher.c ditch dos style newlines 2013-04-23 15:21:39 +10:00
holocronicons.h ditch dos style newlines 2013-04-23 15:21:39 +10:00
JK2_cgame.def Jedi Academy Release 2013-04-04 17:35:38 -05:00
JK2_cgame.vcproj Jedi Academy Release 2013-04-04 17:35:38 -05:00
tr_types.h remove the use of 'typedef enum' without an indentifier 2013-05-02 13:47:50 +10:00