CVE-2026-23567: Integer underflow in Content Distribution Service UDP handler
An integer underflow in the UDP command handler of the TeamViewer DEX Client (former 1E Client) - Content Distribution Service (NomadBranch.exe) prior version 26.1 for Windows allows an adjacent network attacker to trigger a heap-based buffer overflow and cause a denial-of-service (service crash) via specially crafted UDP packets.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2026-23567?
CVE-2026-23567 is classified as a high-severity vulnerability due to the potential for heap-based buffer overflow exploitation.
How do I fix CVE-2026-23567?
To fix CVE-2026-23567, upgrade the TeamViewer DEX Client to version 26.1 or later.
What software is affected by CVE-2026-23567?
CVE-2026-23567 affects the TeamViewer DEX Client, specifically versions prior to 26.1.
What type of vulnerability is CVE-2026-23567?
CVE-2026-23567 is an integer underflow vulnerability affecting the UDP command handler.
Can an attacker exploit CVE-2026-23567 remotely?
Yes, an adjacent network attacker can exploit CVE-2026-23567 to trigger a heap-based buffer overflow.