VDB
CVE-2012-2091
CVE-2012-2091
PUBLISHED
CVSS 9.300000190734863 CRITICAL
Multiple buffer overflows in FlightGear 2.6 and earlier and SimGear 2.6 and earlier allow user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a (1) long string in a rotor tag of an aircraft xml model to the Rotor::getValueforFGSet function in src/FDM/YASim/Rotor.cpp or (2) a crafted UDP packet to the SGSocketUDP::read function in simgear/simgear/simgear/io/sg_socket_udp.cxx.
EPSS 7.56% · 92.0th percentile
Risk Scores
CVSS 2.0
9.300000190734863
EPSS Score
7.56%
92.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| simgear | simgear | 0, 1.9.1, 2.0.0 |
| flightgear | flightgear | 1.9.1, 2.0.0, 0 |
| n/a | n/a | n/a |
Timeline
- Jun 17, 2012 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 2, 2023 EPSS Score
- May 25, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
- Oct 30, 2023 EPSS Score
References
- 48780 third-party-advisory
- FEDORA-2012-8615 vendor-advisory
- [oss-security] 20120410 Re: CVE Request: FlightGear and Simgear Multiple vulnerabilities mailing-list
- FEDORA-2012-8650 vendor-advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=811617 url
- GLSA-201603-12 vendor-advisory
- [Flightgear-devel] 20120320 Re: Flightgear and Simgear multiple format string vulnerabilities mailing-list
- FEDORA-2012-8647 vendor-advisory
- [Flightgear-devel] 20120309 Flightgear and Simgear multiple format string vulnerabilities mailing-list
- https://nvd.nist.gov/vuln/detail/CVE-2012-2091 advisory