7.5
CVSSv2

CVE-2016-9400

Published: 22/02/2017 Updated: 07/11/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The CClient::ProcessServerPacket method in engine/client/client.cpp in Teeworlds prior to 0.6.4 allows remote servers to write to arbitrary physical memory locations and possibly execute arbitrary code via vectors involving snap handling.

Vulnerable Product Search on Vulmon Subscribe to Product

teeworlds teeworlds

fedoraproject fedora 23

Vendor Advisories

Debian Bug report logs - #844546 teeworlds: CVE-2016-9400: possible remote code execution on the client Package: teeworlds; Maintainer for teeworlds is Debian Games Team <pkg-games-devel@listsaliothdebianorg>; Source for teeworlds is src:teeworlds (PTS, buildd, popcon) Reported by: Felix Geyer <fgeyer@debianorg> ...