CVE-2010-4168
Multiple use-after-free vulnerabilities in OpenTTD 1.0.x before 1.0.5 allow (1) remote attackers to cause a denial of service (invalid write and daemon crash) by abruptly disconnecting during transmission of the map from the server, related to…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (3.67%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Multiple use-after-free vulnerabilities in OpenTTD 1.0.x before 1.0.5 allow (1) remote attackers to cause a denial of service (invalid write and daemon crash) by abruptly disconnecting during transmission of the map from the server, related to network/network_server.cpp; (2) remote attackers to cause a denial of service (invalid read and daemon crash) by abruptly disconnecting, related to network/network_server.cpp; and (3) remote servers to cause a denial of service (invalid read and application crash) by forcing a disconnection during the join process, related to network/network.cpp.
- CVSS 3.1
- 7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 3.67% probability · 89th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-416
- Affected
- openttd/openttd · fedoraproject/fedora
- Source
- secalert@redhat.com
References
- http://lists.fedoraproject.org/pipermail/package-announce/2010-December/052187.htmlMailing List, Third Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2010-December/052193.htmlMailing List, Third Party Advisory
- http://marc.info/?l=oss-security&m=128975491407670&w=2Mailing List
- http://marc.info/?l=oss-security&m=128984298802678&w=2Mailing List
- http://secunia.com/advisories/42578Broken Link
- http://security.openttd.org/en/CVE-2010-4168Patch, Vendor Advisory
- http://security.openttd.org/en/patch/28.patchPatch
- http://vcs.openttd.org/svn/changeset/21182Broken Link
- http://www.securityfocus.com/bid/44844Broken Link, Third Party Advisory, VDB Entry
- http://www.vupen.com/english/advisories/2010/2985Broken Link, Vendor Advisory
- http://www.vupen.com/english/advisories/2010/3199Broken Link
- http://lists.fedoraproject.org/pipermail/package-announce/2010-December/052187.htmlMailing List, Third Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2010-December/052193.htmlMailing List, Third Party Advisory
- http://marc.info/?l=oss-security&m=128975491407670&w=2Mailing List
- http://marc.info/?l=oss-security&m=128984298802678&w=2Mailing List
- http://secunia.com/advisories/42578Broken Link
- http://security.openttd.org/en/CVE-2010-4168Patch, Vendor Advisory
- http://security.openttd.org/en/patch/28.patchPatch
- http://vcs.openttd.org/svn/changeset/21182Broken Link
- http://www.securityfocus.com/bid/44844Broken Link, Third Party Advisory, VDB Entry
- http://www.vupen.com/english/advisories/2010/2985Broken Link, Vendor Advisory
- http://www.vupen.com/english/advisories/2010/3199Broken Link
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.