Freeciv
by Freeciv
CVEs (7)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-39047 | Hig | 0.57 | 8.8 | 0.01 | Aug 31, 2022 | Freeciv before 2.6.7 and before 3.0.3 is prone to a buffer overflow vulnerability in the Modpack Installer utility's handling of the modpack URL. | ||
| CVE-2012-6083 | Hig | 0.53 | 7.5 | 0.12 | Jan 23, 2020 | Freeciv before 2.3.3 allows remote attackers to cause a denial of service via a crafted packet. | ||
| CVE-2012-5645 | Hig | 0.49 | 7.5 | 0.04 | Dec 30, 2019 | A denial of service flaw was found in the way the server component of Freeciv before 2.3.4 processed certain packets. A remote attacker could send a specially-crafted packet that, when processed would lead to memory exhaustion or excessive CPU consumption. | ||
| CVE-2026-33250 | Hig | 0.42 | 7.5 | 0.01 | Mar 24, 2026 | Freeciv21 is a free open source, turn-based, empire-building strategy game. Versions prior to 3.1.1 crash with a stack overflow when receiving specially-crafted packets. A remote attacker can use this to take down any public server. A malicious server can use this to crash the… | ||
| CVE-2006-0047 | 0.04 | — | 0.08 | Mar 7, 2006 | packets.c in Freeciv 2.0 before 2.0.8 allows remote attackers to cause a denial of service (server crash) via crafted packets with negative compressed size values. | |||
| CVE-2010-2445 | 0.00 | — | 0.03 | Jul 8, 2010 | freeciv 2.2 before 2.2.1 and 2.3 before 2.3.0 allows attackers to read arbitrary files or execute arbitrary commands via a scenario that contains Lua functionality, related to the (1) os, (2) io, (3) package, (4) dofile, (5) loadfile, (6) loadlib, (7) module, and (8) require… | |||
| CVE-2006-3913 | 0.00 | — | 0.06 | Jul 28, 2006 | Buffer overflow in Freeciv 2.1.0-beta1 and earlier, and SVN 15 Jul 2006 and earlier, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a (1) negative chunk_length or a (2) large chunk->offset value in a… |
- risk 0.57cvss 8.8epss 0.01
Freeciv before 2.6.7 and before 3.0.3 is prone to a buffer overflow vulnerability in the Modpack Installer utility's handling of the modpack URL.
- risk 0.53cvss 7.5epss 0.12
Freeciv before 2.3.3 allows remote attackers to cause a denial of service via a crafted packet.
- risk 0.49cvss 7.5epss 0.04
A denial of service flaw was found in the way the server component of Freeciv before 2.3.4 processed certain packets. A remote attacker could send a specially-crafted packet that, when processed would lead to memory exhaustion or excessive CPU consumption.
- risk 0.42cvss 7.5epss 0.01
Freeciv21 is a free open source, turn-based, empire-building strategy game. Versions prior to 3.1.1 crash with a stack overflow when receiving specially-crafted packets. A remote attacker can use this to take down any public server. A malicious server can use this to crash the…
- CVE-2006-0047Mar 7, 2006risk 0.04cvss —epss 0.08
packets.c in Freeciv 2.0 before 2.0.8 allows remote attackers to cause a denial of service (server crash) via crafted packets with negative compressed size values.
- CVE-2010-2445Jul 8, 2010risk 0.00cvss —epss 0.03
freeciv 2.2 before 2.2.1 and 2.3 before 2.3.0 allows attackers to read arbitrary files or execute arbitrary commands via a scenario that contains Lua functionality, related to the (1) os, (2) io, (3) package, (4) dofile, (5) loadfile, (6) loadlib, (7) module, and (8) require…
- CVE-2006-3913Jul 28, 2006risk 0.00cvss —epss 0.06
Buffer overflow in Freeciv 2.1.0-beta1 and earlier, and SVN 15 Jul 2006 and earlier, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a (1) negative chunk_length or a (2) large chunk->offset value in a…