Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Epic Games Unreal Engine Package Files Code Execution Vulnerability

A vulnerability has been reported for several games using the Unreal game engine that may result in code execution.

An attacker can exploit this vulnerability by creating a package file with a large negative index value. Due to inconsistent interpretation of integers, it is possible for attackers to cause the server to allocate large amounts of memory by attempting to read a package file with a negative index value.

This will result in the corruption of sensitive memory with attacker-supplied values.







 

Privacy Statement
Copyright 2009, SecurityFocus