4.6

CVE-2008-3577

Buffer overflow in src/openttd.cpp in OpenTTD before 0.6.2 allows local users to execute arbitrary code via a large filename supplied to the "-g" parameter in the ttd_main function.  NOTE: it is unlikely that this issue would cross privilege boundaries in typical environments.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
OpenttdOpenttd Version0.1.1
OpenttdOpenttd Version0.1.2
OpenttdOpenttd Version0.1.3
OpenttdOpenttd Version0.1.4
OpenttdOpenttd Version0.2.0
OpenttdOpenttd Version0.2.1
OpenttdOpenttd Version0.3.0
OpenttdOpenttd Version0.3.1
OpenttdOpenttd Version0.3.2
OpenttdOpenttd Version0.3.2.1
OpenttdOpenttd Version0.3.3
OpenttdOpenttd Version0.3.4
OpenttdOpenttd Version0.3.5
OpenttdOpenttd Version0.3.6
OpenttdOpenttd Version0.4.0
OpenttdOpenttd Version0.4.0.1
OpenttdOpenttd Version0.4.5
OpenttdOpenttd Version0.4.6
OpenttdOpenttd Version0.4.7
OpenttdOpenttd Version0.4.8
OpenttdOpenttd Version0.4.8 Updaterc1
OpenttdOpenttd Version0.4.8 Updaterc2
OpenttdOpenttd Version0.5.0
OpenttdOpenttd Version0.5.0 Updaterc1
OpenttdOpenttd Version0.5.0 Updaterc2
OpenttdOpenttd Version0.5.0 Updaterc3
OpenttdOpenttd Version0.5.0 Updaterc4
OpenttdOpenttd Version0.5.0 Updaterc5
OpenttdOpenttd Version0.5.1
OpenttdOpenttd Version0.5.1 Updaterc1
OpenttdOpenttd Version0.5.1 Updaterc2
OpenttdOpenttd Version0.5.1 Updaterc3
OpenttdOpenttd Version0.5.2
OpenttdOpenttd Version0.5.2 Updaterc1
OpenttdOpenttd Version0.5.3
OpenttdOpenttd Version0.5.3 Updaterc1
OpenttdOpenttd Version0.5.3 Updaterc2
OpenttdOpenttd Version0.5.3 Updaterc3
OpenttdOpenttd Version0.6.0
OpenttdOpenttd Version0.6.0 Updatebeta1
OpenttdOpenttd Version0.6.0 Updatebeta2
OpenttdOpenttd Version0.6.0 Updatebeta3
OpenttdOpenttd Version0.6.0 Updatebeta4
OpenttdOpenttd Version0.6.0 Updatebeta5
OpenttdOpenttd Version0.6.0 Updaterc1
OpenttdOpenttd Version0.6.1
OpenttdOpenttd Version0.6.1 Updaterc1
OpenttdOpenttd Version0.6.1 Updaterc2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.08% 0.207
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.6 3.9 6.4
AV:L/AC:L/Au:N/C:P/I:P/A:P
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.