Bug#302702: [Pkg-freeciv-devel] Bug#302702: freeciv-server: Do the server DoS vulnerabilities fixed in 2.0 rc1 affect 1.14 as well?

Jason Dorje Short Jason Dorje Short <jdorje@users.sf.net>, 302702@bugs.debian.org
Wed, 06 Apr 2005 10:55:55 -0400


Moritz Muehlenhoff wrote:
> Package: freeciv-server
> Version: 1.14.2-1
> Severity: important
> Tags: security
> 
> Dear Freeciv maintainers,
> the changelog for 2.0rc1 mentioned
>  * Fixed several security problems with the network code (a client could
>    trigger a server crash).
> 
> Do these affect 1.14 as well? If so and Freeciv 2.0 comes too late for
> Sarge, could you please backport them to 1.14.2?

I think these (at least the worst ones) don't affect 1.14.  But you may 
look through the patches if you want to verify this (PR#12692).

-jason