Security update. Publication date: 10 Jun 2026 URL: https://advisories.mageia.org/MGASA-2026-0183.html Type: security Affected Mageia releases: 9 CVE: CVE-2026-33250 Description: CVE-2026-33250, freeciv crash with a stack overflow when receiving specially-crafted packets. A remote attacker can use this to take down any public server. A malicious server can use this to crash the game on the player's machine References: - https://bugs.mageia.org/show_bug.cgi?id=35257 - https://lists.debian.org/debian-security-announce/2026/msg00082.html - https://www.cve.org/CVERecord?id=CVE-2026-33250 SRPMS: - 9/core/freeciv-3.0.7-1.2.mga9 . New Mageia security advisory addresses critical freeciv vulnerability causing crashes due to remote attacks with crafted packets.. Mageia Security Advisory, freeciv Crash Bug, Remote Attack Prevention, Mageia Update. . Severity: Important. LinuxSecurity.com Team
An update that fixes one vulnerability is now available.. openSUSE Security Update: Security update for freeciv ______________________________________________________________________________ Announcement ID: openSUSE-SU-2026:0155-1 Rating: moderate References: #1260036 Cross-References: CVE-2026-33250 Affected Products: openSUSE Backports SLE-15-SP6 openSUSE Backports SLE-15-SP7 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for freeciv fixes the following issues: - CVE-2026-33250: Fix a vulnerability allowing remote crashing of the server (boo#1260036). - update to version 3.0.10: * Generic bugfix release* Generic bugfix release * Fixed nation color selection assert failures when moving from pre-game to turn 1 * Fixed a crash when city removal left a unit stranded * Fixed growing of the internal string handling buffer, fixing, e.g., issues with very long lines in the savegame * Fixed fc_vsnprintf() return value on Windows, fixing, e.g., issues on loading the tutorial scenario * Various internal changes which should only affect developers * Fixed bad memory access while loading freeciv-2.6 format ruleset * Miscellaneous improvements to in-game text and user documentation * Miscellaneous changes to developer/install/ruleset docs * Updated translations * see https://freeciv.fandom.com/wiki/NEWS-3.0.10 - update to version 3.0.9: * Generic bugfix release * Set diplomatic relations state correctly between team members osdn#48295 * Fixed assert failures when city grows to freeciv's internal max city size (255) * Sammarinese city name Borgo Maggiore corrected osdn#48316 * Cargo gets bounced when transport is lost due to terrain change * Fixed crash with recursive autoattacks in case ofoccupychance setting being > 0 * Fixed memory corruption when transport is not bounced, but cargo is * Corrected amount treasury gets increased by a city in some situations * Cities stop working tiles turned unworkable at turn change * Fixed clearing city border claims when player gets removed from the game osdn#48837 * see https://freeciv.fandom.com/wiki/NEWS-3.0.9 Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP7: zypper in -t patch openSUSE-2026-155=1 - openSUSE Backports SLE-15-SP6: zypper in -t patch openSUSE-2026-155=1 Package List: - openSUSE Backports SLE-15-SP7 (aarch64 ppc64le s390x x86_64): freeciv-3.1.6-bp157.2.3.1 freeciv-debuginfo-3.1.6-bp157.2.3.1 freeciv-debugsource-3.1.6-bp157.2.3.1 freeciv-gtk3-3.1.6-bp157.2.3.1 freeciv-gtk3-debuginfo-3.1.6-bp157.2.3.1 freeciv-gtk4-3.1.6-bp157.2.3.1 freeciv-gtk4-debuginfo-3.1.6-bp157.2.3.1 freeciv-qt-3.1.6-bp157.2.3.1 freeciv-qt-debuginfo-3.1.6-bp157.2.3.1 - openSUSE Backports SLE-15-SP7 (noarch): freeciv-lang-3.1.6-bp157.2.3.1 - openSUSE Backports SLE-15-SP6 (aarch64 i586 ppc64le s390x x86_64): freeciv-3.0.10-bp156.2.3.1 freeciv-gtk3-3.0.10-bp156.2.3.1 freeciv-qt-3.0.10-bp156.2.3.1 - openSUSE Backports SLE-15-SP6 (noarch): freeciv-lang-3.0.10-bp156.2.3.1 References: https://www.suse.com/security/cve/CVE-2026-33250.html https://bugzilla.suse.com/1260036 . Update for openSUSE freeciv addresses a moderate issue allowing remote server crashes. Installation instructions included.. openSUSE security, freeciv patch, software update. . LinuxSecurity.com Team
An update that solves one vulnerability can now be installed.. # freeciv-3.2.4-1.1 on GA media Announcement ID: openSUSE-SU-2026:10401-1 Rating: moderate Cross-References: * CVE-2026-33250 Affected Products: * openSUSE Tumbleweed An update that solves one vulnerability can now be installed. ## Description: These are all security issues fixed in the freeciv-3.2.4-1.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * freeciv 3.2.4-1.1 * freeciv-gtk3 3.2.4-1.1 * freeciv-gtk4 3.2.4-1.1 * freeciv-lang 3.2.4-1.1 * freeciv-qt 3.2.4-1.1 * freeciv-sdl2 3.2.4-1.1 ## References: * https://www.suse.com/security/cve/CVE-2026-33250.html . An update for freeciv-3.2.4-1.1 on openSUSE resolves one moderate vulnerability. Installation recommended.. openSUSE Tumbleweed, freeciv security update, Linux patch January 2026. . LinuxSecurity.com Team
Louis Moureaux discovered that incorrect packet processing in the game server of Freeciv, a free clone of the turn based strategy game Civilization, could result in denial of service. For the oldstable distribution (bookworm), this problem has been fixed in version 3.0.6-1+deb12u1.. - ------------------------------------------------------------------------- Debian Security Advisory DSA-6173-1
An update that fixes one vulnerability is now available. . openSUSE Security Update: Security update for freeciv ______________________________________________________________________________ Announcement ID: openSUSE-SU-2022:10102-1 Rating: important References: #1202548 Cross-References: CVE-2022-6083 Affected Products: openSUSE Backports SLE-15-SP4 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for freeciv fixes the following issues: - update to 3.0.3 (boo#1202548, CVE-2022-6083): * 3.0.3 is a bugfix release * see https://freeciv.fandom.com/wiki/NEWS-3.0.3 - update to 3.0.2: * 3.0.2 is a generic bugfix release * see https://freeciv.fandom.com/wiki/NEWS-3.0.2 - update to 3.0.1: * 3.0.1 is a generic bugfix release * see https://freeciv.fandom.com/wiki/NEWS-3.0.1 - update to 3.0.0: * This release is a major upgrade which with some changes that can support backward compatible rulesets * see - update to 2.6.6: * https://freeciv.fandom.com/wiki/NEWS-2.6.5 * 2.6.6 is a bugfix release. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP4: zypper in -t patch openSUSE-2022-10102=1 Package List: - openSUSE Backports SLE-15-SP4 (aarch64 i586 ppc64le s390x x86_64): freeciv-3.0.3-bp154.2.3.1 freeciv-gtk3-3.0.3-bp154.2.3.1 freeciv-lang-3.0.3-bp154.2.3.1 freeciv-qt-3.0.3-bp154.2.3.1 References: https://www.suse.com/security/cve/CVE-2022-6083.html https://bugzilla.suse.com/1202548 . A recent update for Freeciv resolves a significant security vulnerability in openSUSE. The patch addresses CVE-2022-6083. Fullinformation provided.. openSUSE Security, freeciv Update, Important Issue, Bugfix Release. . Severity: Important. LinuxSecurity.com Team
Advisory text to describe the update. Wrap lines at ~75 chars. Modpack Installer buffer overflow. (CVE-2022-6083) References: . MGASA-2022-0293 - Updated freeciv packages fix security vulnerability Publication date: 25 Aug 2022 URL: https://advisories.mageia.org/MGASA-2022-0293.html Type: security Affected Mageia releases: 8 CVE: CVE-2022-6083 Advisory text to describe the update. Wrap lines at ~75 chars. Modpack Installer buffer overflow. (CVE-2022-6083) References: - https://bugs.mageia.org/show_bug.cgi?id=29307 - https://www.openwall.com/lists/oss-security/2022/08/05/1 - https://lists.fedoraproject.org/archives/list/
2.6.7. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-3cbf2184bd 2022-08-18 02:20:42.840140 --------------------------------------------------------------------------------Name : freeciv Product : Fedora 35 Version : 2.6.7 Release : 1.fc35 URL : https://sourceforge.net/projects/freeciv/ Summary : A multi-player strategy game Description : Freeciv is a turn-based, multi-player, X based strategy game. Freeciv is generally comparable to, and has compatible rules with, the Civilization II(R) game by Microprose(R). In Freeciv, each player is the leader of a civilization, and is competing with the other players in order to become the leader of the greatest civilization. --------------------------------------------------------------------------------Update Information: 2.6.7 --------------------------------------------------------------------------------ChangeLog: * Tue Aug 9 2022 Gwyn Ciesla - 2.6.7-1 - 2.6.7 --------------------------------------------------------------------------------References: [ 1 ] Bug #2116410 - Freeciv: Modpack Installer buffer overflow https://bugzilla.redhat.com/show_bug.cgi?id=2116410 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-3cbf2184bd' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Updated package.. - --------------------------------------------------------------------------Debian Security Advisory DSA 1142-1
Get the latest Linux and open source security news straight to your inbox.