Unrated severityNVD Advisory· Published Jul 20, 2009· Updated Apr 23, 2026
CVE-2009-2548
CVE-2009-2548
Description
Format string vulnerability in Armed Assault (aka ArmA) 1.14 and earlier, and 1.16 beta, and Armed Assault II 1.02 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in the (1) nickname and (2) datafile fields in a join request, which is not properly handled when logging an error message.
Affected products
3Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- aluigi.altervista.org/adv/armazzofs-adv.txtnvdExploit
- www.vupen.com/english/advisories/2009/1951nvdVendor Advisory
News mentions
0No linked articles in our index yet.