Skip to main content

Vendor/product archive

wesnoth / wesnoth CVEs

Beta · best-effort

6 CVEs tagged to wesnoth / wesnoth2 Critical, 2 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2009-0878

Published Mar 12, 2009

The read_game_map function in src/terrain_translation.cpp in Wesnoth before r32987 allows remote attackers to cause a denial of service (memory consumption and daemon hang) via a…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-0366

Published Mar 12, 2009

The uncompress_buffer function in src/server/simple_wml.cpp in Wesnoth before r33069 allows remote attackers to cause a denial of service via a large compressed WML document.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-0367

Published Mar 5, 2009

The Python AI module in Wesnoth 1.4.x and 1.5 before 1.5.11 allows remote attackers to escape the sandbox and execute arbitrary code by using a whitelisted module that imports an…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-5742

Published Dec 1, 2007

Directory traversal vulnerability in the WML engine preprocessor for Wesnoth 1.2.x before 1.2.8, and 1.3.x before 1.3.12, allows remote attackers to read arbitrary files via ".."…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-6201

Published Dec 1, 2007

Unspecified vulnerability in Wesnoth 1.2.x before 1.2.8, and 1.3.x before 1.3.12, allows attackers to cause a denial of service (hang) via a "faulty add-on" and possibly execute o…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-3917

Published Oct 11, 2007

The multiplayer engine in Wesnoth 1.2.x before 1.2.7 and 1.3.x before 1.3.9 allows remote servers to cause a denial of service (crash) via a long message with multibyte characters…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1