MGASA-2013-0363
Dashboard / Vulnerabilities / MGASA-2013-0363
Summary: Updated openttd package fixes security vulnerability
Details: A missing validation in OpenTTD before 1.3.3 allows remote attackers to cause a denial of service (crash) by forcefully crashing aircraft near the corner of the map. This triggers a corner case where data outside of the allocated map array is accessed (CVE-2013-6411).
References: https://advisories.mageia.org/MGASA-2013-0363.html, https://bugs.mageia.org/show_bug.cgi?id=11852, http://openwall.com/lists/oss-security/2013/11/28/17, http://security.openttd.org/en/CVE-2013-6411, http://gb.binaries.openttd.org/binaries/releases/1.3.3/changelog.txt
Affected packages
Package
Name: openttd
Purl: pkg:rpm/mageia/openttd?arch=source&distro=mageia-3
Affected ranges
Type: ECOSYSTEM
Events:
