LWN.net Logo

freeciv: denial of service

Package(s):freeciv CVE #(s):CVE-2012-5645
Created:January 7, 2013 Updated:January 15, 2013
Description: From the Red Hat bugzilla:

A denial of service flaw was found in the way the server component of Freeciv, a turn-based, multi-player, X based strategy game, processed certain packets (invalid packets with whole packet length lower than packet header size or syntactically valid packets, but whose processing would lead to an infinite loop). A remote attacker could send a specially-crafted packet that, when processed would lead to freeciv server to terminate (due to memory exhaustion) or become unresponsive (due to excessive CPU use).

Alerts:
Fedora FEDORA-2012-20610 2013-01-05
Fedora FEDORA-2012-20623 2013-01-05
Mageia MGASA-2013-0005 2013-01-14

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds