Vulnerabilities > Openttd > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2011-09-08 | CVE-2011-3342 | Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Openttd Multiple buffer overflows in OpenTTD before 1.1.3 allow remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via vectors related to (1) NAME, (2) PLYR, (3) CHTS, or (4) AIPL (aka AI config) chunk loading from a savegame. | 7.5 |
2011-09-08 | CVE-2011-3341 | Numeric Errors vulnerability in Openttd Multiple off-by-one errors in order_cmd.cpp in OpenTTD before 1.1.3 allow remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted CMD_INSERT_ORDER command. | 7.5 |
2010-11-17 | CVE-2010-4168 | Use After Free vulnerability in multiple products Multiple use-after-free vulnerabilities in OpenTTD 1.0.x before 1.0.5 allow (1) remote attackers to cause a denial of service (invalid write and daemon crash) by abruptly disconnecting during transmission of the map from the server, related to network/network_server.cpp; (2) remote attackers to cause a denial of service (invalid read and daemon crash) by abruptly disconnecting, related to network/network_server.cpp; and (3) remote servers to cause a denial of service (invalid read and application crash) by forcing a disconnection during the join process, related to network/network.cpp. | 7.5 |
2005-09-21 | CVE-2005-2764 | Denial-Of-Service vulnerability in Openttd 0.4.0.1 Multiple buffer overflows in OpenTTD before 0.4.0.1 allow attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors. | 7.5 |
2005-09-06 | CVE-2005-2763 | Unspecified vulnerability in Openttd Multiple format string vulnerabilities in OpenTTD before 0.4.0.1 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors. | 7.5 |