A vulnerability was detected in OGRECave Ogre up to 14.4.1. The impacted element is the function Ogre::LogManager::stream of the file /ogre/OgreMain/src/OgreLogManager.cpp. Performing manipulation of the argument mDefaultLog results in null pointer dereference. The attack must be initiated from a local position. The exploit is now public and may be used.
{
"binaries": [
{
"binary_name": "libogre1.12.10t64",
"binary_version": "1.12.10+dfsg2-3.1~exp1ubuntu3"
},
{
"binary_name": "ogre-1.12-tools",
"binary_version": "1.12.10+dfsg2-3.1~exp1ubuntu3"
},
{
"binary_name": "python3-ogre-1.12",
"binary_version": "1.12.10+dfsg2-3.1~exp1ubuntu3"
}
]
}