Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sat, 12 Sep 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Freeciv versions before 3.2.6 contain a heap buffer overflow in worklist_load() when processing savegame files with declared worklist lengths exceeding the fixed array bound of 64 elements. Attackers can craft malicious savegame files that write past the entries array into adjacent heap-allocated struct fields, potentially corrupting memory when a user or server operator loads the file. | |
| Title | Freeciv before 3.2.6 Heap Buffer Overflow via worklist_load | |
| First Time appeared |
Freeciv
Freeciv freeciv |
|
| Weaknesses | CWE-122 | |
| CPEs | cpe:2.3:a:freeciv:freeciv:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Freeciv
Freeciv freeciv |
|
| References |
|
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-09-12T18:06:41.013Z
Reserved: 2026-09-12T11:13:43.326Z
Link: CVE-2026-90556
No data.
Status : Received
Published: 2026-09-12T18:16:44.193
Modified: 2026-09-12T18:16:44.193
Link: CVE-2026-90556
No data.
OpenCVE Enrichment
No data.
