Candidate: CVE-2011-3341 PublicDate: 2011-09-08 18:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3341 http://www.openwall.com/lists/oss-security/2011/09/02/4 Description: Multiple off-by-one errors in order_cmd.cpp in OpenTTD before 1.1.3 allow remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted CMD_INSERT_ORDER command. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_openttd: upstream_openttd: released (1.1.3) hardy_openttd: ignored (reached end-of-life) lucid_openttd: ignored (reached end-of-life) maverick_openttd: ignored (reached end-of-life) natty_openttd: ignored (reached end-of-life) oneiric_openttd: ignored (reached end-of-life) precise_openttd: not-affected (1.1.4-1) quantal_openttd: not-affected (1.2.0-1) raring_openttd: not-affected (1.2.0-1) saucy_openttd: not-affected (1.2.0-1) devel_openttd: not-affected (1.2.0-1)