Comment 2 for bug 1278174

Revision history for this message
SirVer (sirver) wrote :

I looked over the list of errors and believe most of them are accurate detection, i.e. there is something flawed in the source code. However I did not see a critical problem in any of them where a remote attacker could gain access to a system through Widelands. Most of them are local exploits, but since Widelands never changes its uid an attacker can not gain any privileges through this (as far as I can tell).

However, it would be nice to get the all fixed of course, most changes should be fairly mechanical.