VDB

GCVE-110-MAGEIA-2015-283

GCVE-110-MAGEIA-2015-283
Advisory Published
Vulnetix · Advisory published July 27, 2015
Toom Lõhmus discovered that the Lua API and preprocessor in the Battle for Wesnoth game up to version 1.12.2 included could lead to client-side authentication information disclosure using maliciously crafted files with the .pdb extension (CVE-2015-5069, CVE-2015-5070). This issue has been fixed in version 1.12.4, which also provides a number of engine and gameplay-related bug fixes. See the referenced code and player changelogs for a detailed listing.

Affected Products

VendorProductVersionsPlatforms
Mageiawesnoth0 (affected), 1.12.4-1.mga5 (unaffected)

Browse GCVE Records

73,873 records in the GCVE database · Updated July 20, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›