MGASA-2013-0164

Source
https://advisories.mageia.org/MGASA-2013-0164.html
Import Source
https://advisories.mageia.org/MGASA-2013-0164.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2013-0164
Published
2013-06-06T12:24:33Z
Modified
2026-04-16T04:28:22.540794Z
Summary
Updated flightgear package fixes security vulnerability
Details

It was reported that FlightGear suffers from improper handling of format strings when FlightGear is started with allowances for remote access (via the --props or --telnet commandline arguments). If a remote attacker were able to connect to FlightGear and set special parameters related with clouds, it could cause FlightGear to crash.

References
Credits

Affected packages

Mageia:2 / flightgear

Package

Name
flightgear
Purl
pkg:rpm/mageia/flightgear?arch=source&distro=mageia-2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.6.0-2.3.mga2

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2013-0164.json"

Mageia:3 / flightgear

Package

Name
flightgear
Purl
pkg:rpm/mageia/flightgear?arch=source&distro=mageia-3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.10.0-1.3.mga3

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2013-0164.json"