Overview
- Activision released an update this week that it says has fixed all known Remote Code Execution vulnerabilities in the 2009 PC release of Call of Duty: Modern Warfare 2.
- The exploited flaws let malicious players upload and run code on opponents' machines during multiplayer, a risk that could lead to malware installs or full PC takeover.
- Backward-compatible console builds that run the original Xbox 360–era code remain exposed and will need separate legacy patches to close the same attack paths.
- Activision said its team is continuing work on legacy titles and asked players to report any remaining issues through the company’s Bug Bounty Portal.
- The patch ends a long-running security problem for PC players and highlights the technical challenges of securing archived code used by modern backward-compatibility systems.