CVE-2016-9400: Buffer Overflow
Published Feb 22, 2017
·Updated
The CClient::ProcessServerPacket method in engine/client/client.cpp in Teeworlds before 0.6.4 allows remote servers to write to arbitrary physical memory locations and possibly execute arbitrary code via vectors involving snap handling.
Affected Software
2 affected components
teeworlds teeworlds<0.6.4
Fedoraproject Fedora=23
Remediation
Patch Available
Patch Available
Event History
Feb 22, 2017
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Data Sourced
via NVD·04:59 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2016-9400?
CVE-2016-9400 has a high severity rating due to its potential to allow remote code execution.
2
How do I fix CVE-2016-9400?
To fix CVE-2016-9400, update Teeworlds to version 0.6.4 or later.
3
Which versions of Teeworlds are affected by CVE-2016-9400?
All versions of Teeworlds before 0.6.4 are affected by CVE-2016-9400.
4
What are the potential impacts of CVE-2016-9400?
CVE-2016-9400 could allow an attacker to write to arbitrary physical memory locations, leading to possible arbitrary code execution.
5
Is there a specific operating system affected by CVE-2016-9400?
Yes, Fedora 23 is specifically mentioned as affected by CVE-2016-9400.