FreeBSD : wesnoth -- Code Injection vulnerability (bad59128-c188-11e8-9d40-f0def10dca57)
Medium Nessus Plugin ID 117723
SynopsisThe remote FreeBSD host is missing a security-related update.
Descriptionshadowm reports :
A severe bug was found in the game client which could allow a malicious user to execute arbitrary code through the Lua engine by using specially crafted code in add-ons, saves, replays, or networked games. This issue affects all platforms and all existing releases since Wesnoth version 1.7.0. Users of all previous version should upgrade immediately.
SolutionUpdate the affected package.