CVE-2004-2592

Quake II server before R1Q2, as used in multiple products, allows remote attackers to cause a denial of service (application crash) via a modified client that asks the server to send data stored at a negative array offset, which is not handled when processing Configstrings and Baselines.

Date published : 2005-11-28

http://www.securityfocus.com/bid/11551

http://archives.neohapsis.com/archives/bugtraq/2004-10/0299.html