Lucene search

K
cveMitreCVE-2009-0366
HistoryMar 12, 2009 - 3:20 p.m.

CVE-2009-0366

2009-03-1215:20:49
CWE-399
mitre
web.nvd.nist.gov
26
cve-2009-0366
wesnoth
denial of service
remote attackers
buffer overflow
nvd

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

6.4

Confidence

Low

EPSS

0.02

Percentile

88.8%

The uncompress_buffer function in src/server/simple_wml.cpp in Wesnoth before r33069 allows remote attackers to cause a denial of service via a large compressed WML document.

Affected configurations

Nvd
Node
wesnothwesnothRange1.5.11
OR
wesnothwesnothMatch1.0rc
OR
wesnothwesnothMatch1.1
OR
wesnothwesnothMatch1.1.1
OR
wesnothwesnothMatch1.1.2
OR
wesnothwesnothMatch1.1.3
OR
wesnothwesnothMatch1.1.4
OR
wesnothwesnothMatch1.1.5
OR
wesnothwesnothMatch1.1.6
OR
wesnothwesnothMatch1.1.7
OR
wesnothwesnothMatch1.1.8
OR
wesnothwesnothMatch1.1.9
OR
wesnothwesnothMatch1.1.10
OR
wesnothwesnothMatch1.1.11
OR
wesnothwesnothMatch1.1.12
OR
wesnothwesnothMatch1.1.13
OR
wesnothwesnothMatch1.1.14
OR
wesnothwesnothMatch1.2
OR
wesnothwesnothMatch1.2.1
OR
wesnothwesnothMatch1.2.2
OR
wesnothwesnothMatch1.2.3
OR
wesnothwesnothMatch1.2.4
OR
wesnothwesnothMatch1.2.5
OR
wesnothwesnothMatch1.2.6
OR
wesnothwesnothMatch1.2.7
OR
wesnothwesnothMatch1.2.8
OR
wesnothwesnothMatch1.3.8
OR
wesnothwesnothMatch1.3.9
OR
wesnothwesnothMatch1.3.10
OR
wesnothwesnothMatch1.3.11
OR
wesnothwesnothMatch1.3.12
OR
wesnothwesnothMatch1.3.13
OR
wesnothwesnothMatch1.3.14
OR
wesnothwesnothMatch1.3.15
OR
wesnothwesnothMatch1.3.16
OR
wesnothwesnothMatch1.3.17
OR
wesnothwesnothMatch1.3.18
OR
wesnothwesnothMatch1.3.19
OR
wesnothwesnothMatch1.4
OR
wesnothwesnothMatch1.4.1
OR
wesnothwesnothMatch1.4.2
OR
wesnothwesnothMatch1.4.3
OR
wesnothwesnothMatch1.4.4
OR
wesnothwesnothMatch1.4.5
OR
wesnothwesnothMatch1.4.6
OR
wesnothwesnothMatch1.4.7
OR
wesnothwesnothMatch1.5.0
OR
wesnothwesnothMatch1.5.1
OR
wesnothwesnothMatch1.5.2
OR
wesnothwesnothMatch1.5.3
OR
wesnothwesnothMatch1.5.4
OR
wesnothwesnothMatch1.5.5
OR
wesnothwesnothMatch1.5.6
OR
wesnothwesnothMatch1.5.7
OR
wesnothwesnothMatch1.5.8
OR
wesnothwesnothMatch1.5.9
OR
wesnothwesnothMatch1.5.10
VendorProductVersionCPE
wesnothwesnoth*cpe:2.3:a:wesnoth:wesnoth:*:*:*:*:*:*:*:*
wesnothwesnoth1.0cpe:2.3:a:wesnoth:wesnoth:1.0:rc:*:*:*:*:*:*
wesnothwesnoth1.1cpe:2.3:a:wesnoth:wesnoth:1.1:*:*:*:*:*:*:*
wesnothwesnoth1.1.1cpe:2.3:a:wesnoth:wesnoth:1.1.1:*:*:*:*:*:*:*
wesnothwesnoth1.1.2cpe:2.3:a:wesnoth:wesnoth:1.1.2:*:*:*:*:*:*:*
wesnothwesnoth1.1.3cpe:2.3:a:wesnoth:wesnoth:1.1.3:*:*:*:*:*:*:*
wesnothwesnoth1.1.4cpe:2.3:a:wesnoth:wesnoth:1.1.4:*:*:*:*:*:*:*
wesnothwesnoth1.1.5cpe:2.3:a:wesnoth:wesnoth:1.1.5:*:*:*:*:*:*:*
wesnothwesnoth1.1.6cpe:2.3:a:wesnoth:wesnoth:1.1.6:*:*:*:*:*:*:*
wesnothwesnoth1.1.7cpe:2.3:a:wesnoth:wesnoth:1.1.7:*:*:*:*:*:*:*
Rows per page:
1-10 of 571

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

6.4

Confidence

Low

EPSS

0.02

Percentile

88.8%