CVE Explorer
CVE-2026-33250
Freeciv21 is a free open source, turn-based, empire-building strategy game. Versions prior to 3.1.1 crash with a stack overflow when receiving specially-crafted packets. A remote attacker can use this to take down any public server. A malicious server can use this to crash the game on the player's machine. Authentication is not needed and, by default, logs do not contain any useful information. All users should upgrade to Freeciv21 version 3.1.1. Running the server behind a firewall can help mit
Known exploited
Not asserted
Disputed
No
Stale source
No
Conflicts
1
Preserved source conflicts
No provider value was silently selected as the winner.
cwe · 2 assertions
{"cweId":"CWE-20","description":"CWE-20: Improper Input Validation","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:8f40e4cca643e4683ea6dc49a5fcbd419164416277bb9ed85b3ec3fe4fd7648d · sha256:844ecb6f886d3771… · /containers/cna/problemTypes/0/descriptions/0
{"cweId":"CWE-121","description":"CWE-121: Stack-based Buffer Overflow","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:8f40e4cca643e4683ea6dc49a5fcbd419164416277bb9ed85b3ec3fe4fd7648d · sha256:844ecb6f886d3771… · /containers/cna/problemTypes/1/descriptions/0
Affected products and versions
1 source assertion{"product":"freeciv21","vendor":"longturn","versions":[{"status":"affected","version":"< 3.1.1"}]}
- cve_program_cvelist_v5affectedurn:baitaphish:normalized-source-record:v2:8f40e4cca643e4683ea6dc49a5fcbd419164416277bb9ed85b3ec3fe4fd7648d · sha256:844ecb6f886d3771… · /containers/cna/affected/0
Provider-owned CVSS observations
1 source assertion{"metric":{"attackComplexity":"LOW","attackVector":"NETWORK","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH","confidentialityImpact":"NONE","integrityImpact":"NONE","privilegesRequired":"NONE","scope":"UNCHANGED","userInteraction":"NONE","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","version":"3.1"},"metric_type":"cvssV3_1"}
- cve_program_cvelist_v5cvssurn:baitaphish:normalized-source-record:v2:8f40e4cca643e4683ea6dc49a5fcbd419164416277bb9ed85b3ec3fe4fd7648d · sha256:844ecb6f886d3771… · /containers/cna/metrics/0/cvssV3_1
CWE assertions
2 source assertions{"cweId":"CWE-20","description":"CWE-20: Improper Input Validation","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:8f40e4cca643e4683ea6dc49a5fcbd419164416277bb9ed85b3ec3fe4fd7648d · sha256:844ecb6f886d3771… · /containers/cna/problemTypes/0/descriptions/0
{"cweId":"CWE-121","description":"CWE-121: Stack-based Buffer Overflow","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:8f40e4cca643e4683ea6dc49a5fcbd419164416277bb9ed85b3ec3fe4fd7648d · sha256:844ecb6f886d3771… · /containers/cna/problemTypes/1/descriptions/0
Source references
4 source assertions{"name":"https://github.com/longturn/freeciv21/commit/ad8e18ca22595529599782b2984bf44df8d69ed6","tags":["x_refsource_MISC"],"url":"https://github.com/longturn/freeciv21/commit/ad8e18ca22595529599782b2984bf44df8d69ed6"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:8f40e4cca643e4683ea6dc49a5fcbd419164416277bb9ed85b3ec3fe4fd7648d · sha256:844ecb6f886d3771… · /containers/cna/references/1
{"name":"https://github.com/longturn/freeciv21/releases/tag/v3.1.1","tags":["x_refsource_MISC"],"url":"https://github.com/longturn/freeciv21/releases/tag/v3.1.1"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:8f40e4cca643e4683ea6dc49a5fcbd419164416277bb9ed85b3ec3fe4fd7648d · sha256:844ecb6f886d3771… · /containers/cna/references/2
{"name":"https://github.com/longturn/freeciv21/security/advisories/GHSA-f76g-6w3f-f6r3","tags":["x_refsource_CONFIRM"],"url":"https://github.com/longturn/freeciv21/security/advisories/GHSA-f76g-6w3f-f6r3"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:8f40e4cca643e4683ea6dc49a5fcbd419164416277bb9ed85b3ec3fe4fd7648d · sha256:844ecb6f886d3771… · /containers/cna/references/0
{"name":"https://redmine.freeciv.org/issues/1955","tags":["x_refsource_MISC"],"url":"https://redmine.freeciv.org/issues/1955"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:8f40e4cca643e4683ea6dc49a5fcbd419164416277bb9ed85b3ec3fe4fd7648d · sha256:844ecb6f886d3771… · /containers/cna/references/3
Attribution and limitations
- CVE Program CVEList V5: Reproduce the MITRE copyright designation and CVE license in copies. Source →
Provider severity values are preserved separately. Baitaphish does not convert them into a risk rating, infer affected products, or treat EPSS as observed exploitation.