Freedroid

Freedroidrpg

2 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.6%
  • Veröffentlicht 23.06.2020 10:15:10
  • Zuletzt bearbeitet 21.11.2024 05:04:28

An issue was discovered in map.c in FreedroidRPG 1.0rc2. It assumes lengths of data sets read from saved game files. It copies data from a file into a fixed-size heap-allocated buffer without size verification, leading to a heap-based buffer overflow...

Exploit
  • EPSS 0.36%
  • Veröffentlicht 23.06.2020 10:15:10
  • Zuletzt bearbeitet 21.11.2024 05:04:29

An issue was discovered in savestruct_internal.c in FreedroidRPG 1.0rc2. Saved game files are composed of Lua scripts that recover a game's state. A file can be modified to put any Lua code inside, leading to arbitrary code execution while loading.