CVE-2015-0844
Description
From CVE.org
The WML/Lua API in Battle for Wesnoth 1.7.x through 1.11.x and 1.12.x before 1.12.2 allows remote attackers to read arbitrary files via a crafted (1) campaign or (2) map file.
Statement
Red Hat Product Security has determined that this vulnerability does not affect any currently supported Red Hat product. This assessment may evolve based on further analysis and discovery. For more information about this vulnerability and the products it affects, please see the linked references.
Understanding the Weakness (CWE)
Access Control
Technical Impact: Gain Privileges or Assume Identity
An attacker may be able to elevate privileges.
Confidentiality
Technical Impact: Read Application Data
An attacker may be able to obtain sensitive information.
Integrity,Confidentiality,Availability
Technical Impact: Execute Unauthorized Code or Commands
An attacker may be able to execute code.
Frequently Asked Questions
Not sure what something means? Check out our Security Glossary.
Want to get errata notifications? Sign up here.