Skip to main content

Vendor archive

wesnoth CVEs

Beta · best-effort

10 CVEs tagged to vendor wesnoth2 Critical, 3 High, 4 Medium, 1 Low, 0 Unrated.

CVE-2018-1999023

Published Jul 23, 2018

The Battle for Wesnoth Project version 1.7.0 through 1.14.3 contains a Code Injection vulnerability in the Lua scripting engine that can result in code execution outside the sandb…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2009-0878

Published Mar 12, 2009

The read_game_map function in src/terrain_translation.cpp in Wesnoth before r32987 allows remote attackers to cause a denial of service (memory consumption and daemon hang) via a…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-0366

Published Mar 12, 2009

The uncompress_buffer function in src/server/simple_wml.cpp in Wesnoth before r33069 allows remote attackers to cause a denial of service via a large compressed WML document.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-0367

Published Mar 5, 2009

The Python AI module in Wesnoth 1.4.x and 1.5 before 1.5.11 allows remote attackers to escape the sandbox and execute arbitrary code by using a whitelisted module that imports an…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-5742

Published Dec 1, 2007

Directory traversal vulnerability in the WML engine preprocessor for Wesnoth 1.2.x before 1.2.8, and 1.3.x before 1.3.12, allows remote attackers to read arbitrary files via ".."…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-6201

Published Dec 1, 2007

Unspecified vulnerability in Wesnoth 1.2.x before 1.2.8, and 1.3.x before 1.3.12, allows attackers to cause a denial of service (hang) via a "faulty add-on" and possibly execute o…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-3917

Published Oct 11, 2007

The multiplayer engine in Wesnoth 1.2.x before 1.2.7 and 1.3.x before 1.3.9 allows remote servers to cause a denial of service (crash) via a long message with multibyte characters…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-10 of 10 CVEsPage 1 of 1