Bug#978745: Server buffer overflow when reading tailored score log

2020-12-31 Thread Markus Koschany
Hi, Am Donnerstag, den 31.12.2020, 10:36 +0200 schrieb Marko Lindqvist: > Package: freeciv > Version: 2.6.2.1-2 > Tags: Security > > Freeciv server has a buffer overflow vulnerability, if it reads > tailored score log file. > Score log functionality is not enabled by default, and it's rarely enab

Bug#978745: Server buffer overflow when reading tailored score log

2020-12-31 Thread Marko Lindqvist
On Thu, 31 Dec 2020 at 10:39, Marko Lindqvist wrote: > I'll send link to upstream ticket once it is available. https://www.hostedredmine.com/issues/907791 - ML

Bug#978745: Server buffer overflow when reading tailored score log

2020-12-31 Thread Marko Lindqvist
Package: freeciv Version: 2.6.2.1-2 Tags: Security Freeciv server has a buffer overflow vulnerability, if it reads tailored score log file. Score log functionality is not enabled by default, and it's rarely enabled. Freeciv-2.6.3 to be released later tonight will contain a fix. I'll send link to u