Security Advisory
CVE-2020-14939
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
An issue was discovered in savestruct_internal.c in FreedroidRPG 1.0rc2. Saved game files are composed of Lua scripts that recover a games state. A file can be modified to put any Lua code inside, leading to arbitrary code execution while loading.