Description
sys/sys_unix.c in the ioQuake3 engine on Unix and Linux, as used in World of Padman 1.5.x before 1.5.1.1 and OpenArena 0.8.x-15 and 0.8.x-16, allows remote game servers to execute arbitrary commands via shell metacharacters in a long fs_game variable.
Published: 2011-08-04
Score: 7.5 High
EPSS: 5.5% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2011-1418 sys/sys_unix.c in the ioQuake3 engine on Unix and Linux, as used in World of Padman 1.5.x before 1.5.1.1 and OpenArena 0.8.x-15 and 0.8.x-16, allows remote game servers to execute arbitrary commands via shell metacharacters in a long fs_game variable.
History

No history.

Subscriptions

Ioquake3 Ioquake3 Engine
Linux Linux Kernel
Openarena Openarena
Worldofpadman World Of Padman
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-06T22:28:40.785Z

Reserved: 2011-03-10T00:00:00.000Z

Link: CVE-2011-1412

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2011-08-04T02:45:32.247

Modified: 2026-04-29T01:13:23.040

Link: CVE-2011-1412

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses