CVE-2008-3577
EPSS 0.08%
Description
Buffer overflow in src/openttd.cpp in OpenTTD before 0.6.2 allows local users to execute arbitrary code via a large filename supplied to the "-g" parameter in the ttd_main function. NOTE: it is unlikely that this issue would cross privilege boundaries in typical environments.
How to fix CVE-2008-3577
To remediate CVE-2008-3577, upgrade the affected package to a fixed version below.
- Debian/openttd—upgrade to 0.6.2-1 or later
Is CVE-2008-3577 being exploited?
Low — EPSS is 0.1%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 0.6.2-1