Freeciv Multiple Remote Denial Of Service Vulnerabilities
BID:41352
CVE-2012-5645 |Info
Freeciv Multiple Remote Denial Of Service Vulnerabilities
| Bugtraq ID: | 41352 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2012-5645 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 03 2010 12:00AM |
| Updated: | May 07 2015 05:11PM |
| Credit: | Luigi Auriemma |
| Vulnerable: |
Freeciv Freeciv 2.2.1 |
| Not Vulnerable: |
Freeciv Freeciv 2.3.3 |
Discussion
Freeciv Multiple Remote Denial Of Service Vulnerabilities
Freeciv is prone to multiple remote denial-of-service vulnerabilities because the application fails to properly handle specially crafted network packets.
An attacker can exploit these issues to cause the applications to become unresponsive or to crash the affected game servers, denying service to legitimate users.
Freeciv 2.2.1 is vulnerable; other versions may also be affected.
Freeciv is prone to multiple remote denial-of-service vulnerabilities because the application fails to properly handle specially crafted network packets.
An attacker can exploit these issues to cause the applications to become unresponsive or to crash the affected game servers, denying service to legitimate users.
Freeciv 2.2.1 is vulnerable; other versions may also be affected.
Exploit / POC
Freeciv Multiple Remote Denial Of Service Vulnerabilities
The following exploit is available:
The following exploit is available:
Solution / Fix
Freeciv Multiple Remote Denial Of Service Vulnerabilities
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Freeciv Multiple Remote Denial Of Service Vulnerabilities
References:
References:
- CVE Request -- Freeciv (X < 2.3.3): DoS (memory exhaustion or excessive CPU cons (SecLists.Org)
- Freeciv - Homepage (Freeciv)