<title>OpenTTD: Remote Denial of Service</title>
The OpenTTD server is vulnerable to a remote Denial of Service.
<announced>September 06, 2006</announced>
<revised>September 06, 2006: 01</revised>
<unaffected range="ge">0.4.8</unaffected>
<vulnerable range="lt">0.4.8</vulnerable>
OpenTTD is a clone of Transport Tycoon Deluxe.
OpenTTD is vulnerable to a Denial of Service attack due to a flaw in
the manner the game server handles errors in command packets.
An authenticated attacker can cause a Denial of Service by sending an
invalid error number to a vulnerable OpenTTD server.
There is no known workaround at this time.
All OpenTTD users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose &quot;&gt;=games-simulation/openttd-0.4.8&quot;</code>
<uri link="">CVE-2006-1998</uri>
<uri link="">CVE-2006-1999</uri>
