Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 18 Sep 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 12 Sep 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Freeciv versions before 3.2.6 contain a heap buffer overflow in worklist_load() when processing savegame files with declared worklist lengths exceeding the fixed array bound of 64 elements. Attackers can craft malicious savegame files that write past the entries array into adjacent heap-allocated struct fields, potentially corrupting memory when a user or server operator loads the file. | |
| Title | Freeciv before 3.2.6 Heap Buffer Overflow via worklist_load | |
| First Time appeared |
Freeciv
Freeciv freeciv |
|
| Weaknesses | CWE-122 | |
| CPEs | cpe:2.3:a:freeciv:freeciv:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Freeciv
Freeciv freeciv |
|
| References |
|
|
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-09-18T17:23:06.892Z
Reserved: 2026-09-12T11:13:43.326Z
Link: CVE-2026-90556
Updated: 2026-09-18T17:17:14.837Z
Status : Received
Published: 2026-09-12T18:16:44.193
Modified: 2026-09-18T18:18:00.080
Link: CVE-2026-90556
No data.
OpenCVE Enrichment
Updated: 2026-09-15T18:00:17Z