CVE-2011-10014

GTA San Andreas Multiplayer (SA-MP) server version 0.3.1.1 is vulnerable to a stack-based buffer overflow triggered by parsing a malformed server.cfg configuration file. The vulnerability allows local attackers to execute arbitrary code when the server binary (samp-server.exe) processes a crafted echo directive containing excessive input. The original 'sa-mp.com' site is defunct, but the community maintains mirrors and forks that may be vulnerable.
CVSS

No CVSS.

Configurations

No configuration.

History

14 Aug 2025, 15:15

Type Values Removed Values Added
References () https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/exploits/windows/fileformat/gta_samp.rb - () https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/exploits/windows/fileformat/gta_samp.rb -
References () https://www.exploit-db.com/exploits/17893 - () https://www.exploit-db.com/exploits/17893 -
References () https://www.exploit-db.com/exploits/18038 - () https://www.exploit-db.com/exploits/18038 -

14 Aug 2025, 13:11

Type Values Removed Values Added
Summary
  • (es) GTA San Andreas Multiplayer (SA-MP) server versión 0.3.1.1, es vulnerable a un desbordamiento de búfer basado en la pila, provocado al analizar un archivo de configuración server.cfg mal formado. Esta vulnerabilidad permite a atacantes locales ejecutar código arbitrario cuando el binario del servidor (samp-server.exe) procesa una directiva echo manipulada que contiene una entrada excesiva. El sitio web original "sa-mp.com" está inactivo, pero la comunidad mantiene servidores espejo y bifurcaciones que podrían ser vulnerables.

13 Aug 2025, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-13 21:15

Updated : 2025-08-14 15:15


NVD link : CVE-2011-10014

Mitre link : CVE-2011-10014

CVE.ORG link : CVE-2011-10014


JSON object : View

Products Affected

No product.

CWE
CWE-121

Stack-based Buffer Overflow