CVE-2023-34561

A buffer overflow in the level parsing code of RobTop Games AB Geometry Dash v2.113 allows attackers to execute arbitrary code via entering a Geometry Dash level.
References
Link Resource
https://github.com/meltah/gd-rce Exploit Third Party Advisory
https://www.youtube.com/watch?v=DMxucOWfLPc Exploit Third Party Advisory
https://www.youtube.com/watch?v=RGMeWPchScg Exploit Third Party Advisory
https://www.youtube.com/watch?v=ev0VXbiduuQ Exploit Third Party Advisory
https://www.youtube.com/watch?v=kAeJvY6BBps Exploit Third Party Advisory
https://www.youtube.com/watch?v=u7eXBr4HkKQ Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:robtopgames:geometry_dash:2.113:*:*:*:*:*:*:*

History

18 Jul 2023, 18:22

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CWE CWE-120
First Time Robtopgames
Robtopgames geometry Dash
CPE cpe:2.3:a:robtopgames:geometry_dash:2.113:*:*:*:*:*:*:*
References (MISC) https://www.youtube.com/watch?v=DMxucOWfLPc - (MISC) https://www.youtube.com/watch?v=DMxucOWfLPc - Exploit, Third Party Advisory
References (MISC) https://www.youtube.com/watch?v=RGMeWPchScg - (MISC) https://www.youtube.com/watch?v=RGMeWPchScg - Exploit, Third Party Advisory
References (MISC) https://www.youtube.com/watch?v=u7eXBr4HkKQ - (MISC) https://www.youtube.com/watch?v=u7eXBr4HkKQ - Exploit, Third Party Advisory
References (MISC) https://github.com/meltah/gd-rce - (MISC) https://github.com/meltah/gd-rce - Exploit, Third Party Advisory
References (MISC) https://www.youtube.com/watch?v=ev0VXbiduuQ - (MISC) https://www.youtube.com/watch?v=ev0VXbiduuQ - Exploit, Third Party Advisory
References (MISC) https://www.youtube.com/watch?v=kAeJvY6BBps - (MISC) https://www.youtube.com/watch?v=kAeJvY6BBps - Exploit, Third Party Advisory

11 Jul 2023, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-07-11 13:15

Updated : 2024-02-28 20:13


NVD link : CVE-2023-34561

Mitre link : CVE-2023-34561

CVE.ORG link : CVE-2023-34561


JSON object : View

Products Affected

robtopgames

  • geometry_dash
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')