The CClient::ProcessServerPacket method in engine/client/client.cpp in Teeworlds before 0.6.4 allows remote servers to write to arbitrary physical memory locations and possibly execute arbitrary code via vectors involving snap handling.
References
Configurations
History
21 Nov 2024, 03:01
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.openwall.com/lists/oss-security/2016/11/16/8 - Mailing List, Patch, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2016/11/17/8 - Mailing List, Patch, Third Party Advisory | |
References | () http://www.securityfocus.com/bid/94381 - Third Party Advisory, VDB Entry | |
References | () https://github.com/teeworlds/teeworlds/commit/ff254722a2683867fcb3e67569ffd36226c4bc62 - Issue Tracking, Patch, Third Party Advisory | |
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/C4JNSBXXPE7O32ZMFK7D7YL6EKLG7PRV/ - | |
References | () https://security.gentoo.org/glsa/201705-13 - Third Party Advisory | |
References | () https://www.teeworlds.com/?page=news&id=12086 - Vendor Advisory |
07 Nov 2023, 02:37
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Information
Published : 2017-02-22 16:59
Updated : 2024-11-21 03:01
NVD link : CVE-2016-9400
Mitre link : CVE-2016-9400
CVE.ORG link : CVE-2016-9400
JSON object : View
Products Affected
teeworlds
- teeworlds
fedoraproject
- fedora
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer