OpenTTD before 1.0.1 does not properly validate index values of certain items, which allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted in-game command.
The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Openttd | Openttd | * | 1.0.0 (including) |
Openttd | Openttd | 0.1.1 (including) | 0.1.1 (including) |
Openttd | Openttd | 0.1.2 (including) | 0.1.2 (including) |
Openttd | Openttd | 0.1.3 (including) | 0.1.3 (including) |
Openttd | Openttd | 0.1.4 (including) | 0.1.4 (including) |
Openttd | Openttd | 0.2.0 (including) | 0.2.0 (including) |
Openttd | Openttd | 0.2.1 (including) | 0.2.1 (including) |
Openttd | Openttd | 0.3.0 (including) | 0.3.0 (including) |
Openttd | Openttd | 0.3.1 (including) | 0.3.1 (including) |
Openttd | Openttd | 0.3.2 (including) | 0.3.2 (including) |
Openttd | Openttd | 0.3.2.1 (including) | 0.3.2.1 (including) |
Openttd | Openttd | 0.3.3 (including) | 0.3.3 (including) |
Openttd | Openttd | 0.3.4 (including) | 0.3.4 (including) |
Openttd | Openttd | 0.3.5 (including) | 0.3.5 (including) |
Openttd | Openttd | 0.3.6 (including) | 0.3.6 (including) |
Openttd | Openttd | 0.3.7 (including) | 0.3.7 (including) |
Openttd | Openttd | 0.4.0 (including) | 0.4.0 (including) |
Openttd | Openttd | 0.4.0.1 (including) | 0.4.0.1 (including) |
Openttd | Openttd | 0.4.5 (including) | 0.4.5 (including) |
Openttd | Openttd | 0.4.6 (including) | 0.4.6 (including) |
Openttd | Openttd | 0.4.7 (including) | 0.4.7 (including) |
Openttd | Openttd | 0.4.8 (including) | 0.4.8 (including) |
Openttd | Openttd | 0.4.8-rc1 (including) | 0.4.8-rc1 (including) |
Openttd | Openttd | 0.5.0 (including) | 0.5.0 (including) |
Openttd | Openttd | 0.5.0-rc1 (including) | 0.5.0-rc1 (including) |
Openttd | Openttd | 0.5.0-rc2 (including) | 0.5.0-rc2 (including) |
Openttd | Openttd | 0.5.0-rc3 (including) | 0.5.0-rc3 (including) |
Openttd | Openttd | 0.5.0-rc4 (including) | 0.5.0-rc4 (including) |
Openttd | Openttd | 0.5.0-rc5 (including) | 0.5.0-rc5 (including) |
Openttd | Openttd | 0.5.1 (including) | 0.5.1 (including) |
Openttd | Openttd | 0.5.1-rc1 (including) | 0.5.1-rc1 (including) |
Openttd | Openttd | 0.5.1-rc2 (including) | 0.5.1-rc2 (including) |
Openttd | Openttd | 0.5.1-rc3 (including) | 0.5.1-rc3 (including) |
Openttd | Openttd | 0.5.2 (including) | 0.5.2 (including) |
Openttd | Openttd | 0.5.2-rc1 (including) | 0.5.2-rc1 (including) |
Openttd | Openttd | 0.5.3 (including) | 0.5.3 (including) |
Openttd | Openttd | 0.5.3-rc1 (including) | 0.5.3-rc1 (including) |
Openttd | Openttd | 0.5.3-rc2 (including) | 0.5.3-rc2 (including) |
Openttd | Openttd | 0.5.3-rc3 (including) | 0.5.3-rc3 (including) |
Openttd | Openttd | 0.6.0 (including) | 0.6.0 (including) |
Openttd | Openttd | 0.6.0-beta1 (including) | 0.6.0-beta1 (including) |
Openttd | Openttd | 0.6.0-beta2 (including) | 0.6.0-beta2 (including) |
Openttd | Openttd | 0.6.0-beta3 (including) | 0.6.0-beta3 (including) |
Openttd | Openttd | 0.6.0-beta4 (including) | 0.6.0-beta4 (including) |
Openttd | Openttd | 0.6.0-beta5 (including) | 0.6.0-beta5 (including) |
Openttd | Openttd | 0.6.0-rc1 (including) | 0.6.0-rc1 (including) |
Openttd | Openttd | 0.6.1 (including) | 0.6.1 (including) |
Openttd | Openttd | 0.6.1-rc1 (including) | 0.6.1-rc1 (including) |
Openttd | Openttd | 0.6.1-rc2 (including) | 0.6.1-rc2 (including) |
Openttd | Openttd | 0.6.2-rc1 (including) | 0.6.2-rc1 (including) |
Openttd | Openttd | 0.6.2-rc2 (including) | 0.6.2-rc2 (including) |
Openttd | Openttd | 0.7.4 (including) | 0.7.4 (including) |
Openttd | Ubuntu | hardy | * |
Openttd | Ubuntu | jaunty | * |
Openttd | Ubuntu | karmic | * |
Openttd | Ubuntu | lucid | * |
Openttd | Ubuntu | upstream | * |