Back
CVE-2005-2774
Format string vulnerability in Lithium II mod 1.24 for Quake 2 allows remote attackers to cause a denial of service (server crash) and possibly execute arbitrary code via format string specifiers in the nickname.
Published: Sep 2, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| lithium_software | lithium_ii_mod | * |
GitHub Security Advisory GHSA-2c5v-4pcw-67jx
Format string vulnerability in Lithium II mod 1.24 for Quake 2 allows remote attackers to cause a...
References (8)
- http://marc.info/?l=bugtraq&m=112500372617684&w=2
- http://secunia.com/advisories/16585/
- http://www.securityfocus.com/bid/14664
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22013
- http://marc.info/?l=bugtraq&m=112500372617684&w=2
- http://secunia.com/advisories/16585/
- http://www.securityfocus.com/bid/14664
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22013
Risk Scores
CVSS Score
5.0 / 10
EPSS Score
2.76%
Top 15% most likely to be exploited
Threat Score
20.8 / 100
Data Sources
NVD
EPSS
GitHub