Vulnerability Details CVE-2008-3577
Buffer overflow in src/openttd.cpp in OpenTTD before 0.6.2 allows local users to execute arbitrary code via a large filename supplied to the "-g" parameter in the ttd_main function. NOTE: it is unlikely that this issue would cross privilege boundaries in typical environments.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 24.6%
CVSS Severity
CVSS v2 Score 4.6
Products affected by CVE-2008-3577
-
cpe:2.3:a:openttd:openttd:0.1.1
-
cpe:2.3:a:openttd:openttd:0.1.2
-
cpe:2.3:a:openttd:openttd:0.1.3
-
cpe:2.3:a:openttd:openttd:0.1.4
-
cpe:2.3:a:openttd:openttd:0.2.0
-
cpe:2.3:a:openttd:openttd:0.2.1
-
cpe:2.3:a:openttd:openttd:0.3.0
-
cpe:2.3:a:openttd:openttd:0.3.1
-
cpe:2.3:a:openttd:openttd:0.3.2
-
cpe:2.3:a:openttd:openttd:0.3.2.1
-
cpe:2.3:a:openttd:openttd:0.3.3
-
cpe:2.3:a:openttd:openttd:0.3.4
-
cpe:2.3:a:openttd:openttd:0.3.5
-
cpe:2.3:a:openttd:openttd:0.3.6
-
cpe:2.3:a:openttd:openttd:0.4.0
-
cpe:2.3:a:openttd:openttd:0.4.0.1
-
cpe:2.3:a:openttd:openttd:0.4.5
-
cpe:2.3:a:openttd:openttd:0.4.6
-
cpe:2.3:a:openttd:openttd:0.4.7
-
cpe:2.3:a:openttd:openttd:0.4.8
-
cpe:2.3:a:openttd:openttd:0.5.0
-
cpe:2.3:a:openttd:openttd:0.5.1
-
cpe:2.3:a:openttd:openttd:0.5.2
-
cpe:2.3:a:openttd:openttd:0.5.3
-
cpe:2.3:a:openttd:openttd:0.6.0
-
cpe:2.3:a:openttd:openttd:0.6.1