CVE-2009-4846 describes multiple buffer overflow vulnerabilities in Deliantra Server versions prior to 2.82, specifically within the command_gsay function and the book implementation. These flaws allow unauthenticated remote attackers to execute arbitrary code on affected systems. The vulnerability carries a CVSS score of 6.8, indicating a medium severity risk with network-based attacks requiring medium complexity to achieve partial impact on confidentiality, integrity, and availability. There is no evidence of active exploitation, publicly available exploit code, or significant community discussion surrounding this decade-old vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 2.81CPE matchmatch criteria | cpe:2.3:a:deliantra:deliantra:*:*:*:*:*:*:*:* | ||
0.99CPE matchmatch criteria | cpe:2.3:a:deliantra:deliantra:0.99:*:*:*:*:*:*:* | ||
0.9955CPE matchmatch criteria | cpe:2.3:a:deliantra:deliantra:0.9955:*:*:*:*:*:*:* | ||
0.9956CPE matchmatch criteria | cpe:2.3:a:deliantra:deliantra:0.9956:*:*:*:*:*:*:* | ||
0.9959CPE matchmatch criteria | cpe:2.3:a:deliantra:deliantra:0.9959:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.