← Back

Vavoom

vavoom

Vendor: Vavoom • 5 CVEs

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Vavoom
1Vavoom
Apr 23, 2026
Aug 25, 2007
N/A· v4
N/A· v3
4.3 MEDIUM· v2
The VStr::Resize function in str.cpp in Vavoom 1.24 and earlier allows remote attackers to cause a denial of service (daemon crash) via a string with a negative NewLen value within a certain UDP packet that triggers an a...Show more
The VStr::Resize function in str.cpp in Vavoom 1.24 and earlier allows remote attackers to cause a denial of service (daemon crash) via a string with a negative NewLen value within a certain UDP packet that triggers an assertion error.Show less
1Vavoom
1Vavoom
Apr 23, 2026
Aug 25, 2007
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer overflow in the VThinker::BroadcastPrintf function in p_thinker.cpp in Vavoom 1.24 and earlier allows remote attackers to execute arbitrary code via (1) a long string in a chat message and possibly (2) a long name...Show more
Buffer overflow in the VThinker::BroadcastPrintf function in p_thinker.cpp in Vavoom 1.24 and earlier allows remote attackers to execute arbitrary code via (1) a long string in a chat message and possibly (2) a long name field.Show less
1Vavoom
1Vavoom
Apr 23, 2026
Aug 25, 2007
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Format string vulnerability in the Say command in sv_main.cpp in Vavoom 1.24 and earlier allows remote attackers to execute arbitrary code via format string specifiers in a chat message, related to a call to the Broadcas...Show more
Format string vulnerability in the Say command in sv_main.cpp in Vavoom 1.24 and earlier allows remote attackers to execute arbitrary code via format string specifiers in a chat message, related to a call to the BroadcastPrintf function.Show less
1Vavoom
1Vavoom
Apr 16, 2026
Mar 28, 2006
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Buffer overflow in Vavoom 1.19.1 and earlier allows remote attackers to cause a denial of service (application crash) via an invalid comprLength value in a compressed packet.
1Vavoom
1Vavoom
Apr 16, 2026
Mar 28, 2006
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Vavoom 1.19.1 and earlier allows remote attackers to cause a denial of service (infinite loop) via (1) a packet with no data or (2) a large packet, which prevents Vavoom from discarding the packet from the socket.