openSUSE-SU-2026:21800-1

    Dashboard / Vulnerabilities / openSUSE-SU-2026:21800-1

    openSUSE-SU-2026:21800-1

    Published: 7 Sept 2026Last Modified: 9 Sept 2026

    Summary: Security update for freeciv

    Details: This update for freeciv fixes the following issues: Changes in freeciv: - freeciv 3.2.6: * Fix Heap Buffer Overflow in worklist_load() via Crafted Save File (boo#1278695) * Fix Out-of-Bounds Read in activities.order[] via Crafted Save File (boo#1278696) * Fix some unit move legality checks and path finding issues * Improve logging about player authentication * Fix infinite audio loop in the client exit with the SDL3 audio * Fix issue with displayed "turns to grow" for the city to be wrong after city shrank * Made tech tree not to show buildings or governments which tech actually makes unavailable * Bug fixes, translation updates, docummentation updates - freeciv 3.2.5: * Fix No First City vs Currently has cities inconsistency on savegame loading * AI: Enable rampage with more attack types * Fixed floating point exception at air unit handling * Clients: Display NeverProtects unit help in correct place * gtk4: Fixed city trading * qt: Fixed "Save Options pn Exit" toggle * Miscellaneous changes to developer/install/ruleset docs * Corrected encoding of the Hungarian translation * Compatibility fixes for glibc-2.43, g++16, Qt-6.11

    Affected packages

    Package

    Name: freeciv

    Purl: pkg:rpm/opensuse/freeciv&distro=openSUSE%20Leap%2016.0

    Affected ranges

    Type: ECOSYSTEM

    Events:

    Introduced- 0
    Fixed -3.2.6-bp160.1.1

    Affected versions

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    openSUSE-SU-2026:21800-1 | CVE-DB