rpm package
suse/teeworlds&distro=SUSE Package Hub 15 SP1
pkg:rpm/suse/teeworlds&distro=SUSE%20Package%20Hub%2015%20SP1
Vulnerabilities (6)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2020-12066 | Hig | 7.5 | < 0.7.5-bp151.2.6.1 | 0.7.5-bp151.2.6.1 | Apr 22, 2020 | CServer::SendMsg in engine/server/server.cpp in Teeworlds 0.7.x before 0.7.5 allows remote attackers to shut down the server. | |
| CVE-2019-20787 | Cri | 9.8 | < 0.7.5-bp151.2.6.1 | 0.7.5-bp151.2.6.1 | Apr 22, 2020 | Teeworlds before 0.7.4 has an integer overflow when computing a tilemap size. | |
| CVE-2019-10877 | Cri | 9.8 | < 0.7.3.1-bp151.2.3.3 | 0.7.3.1-bp151.2.3.3 | Apr 5, 2019 | In Teeworlds 0.7.2, there is an integer overflow in CMap::Load() in engine/shared/map.cpp that can lead to a buffer overflow, because multiplication of width and height is mishandled. | |
| CVE-2019-10879 | Cri | 9.8 | < 0.7.3.1-bp151.2.3.3 | 0.7.3.1-bp151.2.3.3 | Apr 5, 2019 | In Teeworlds 0.7.2, there is an integer overflow in CDataFileReader::Open() in engine/shared/datafile.cpp that can lead to a buffer overflow and possibly remote code execution, because size-related multiplications are mishandled. | |
| CVE-2019-10878 | Cri | 9.8 | < 0.7.3.1-bp151.2.3.3 | 0.7.3.1-bp151.2.3.3 | Apr 5, 2019 | In Teeworlds 0.7.2, there is a failed bounds check in CDataFileReader::GetData() and CDataFileReader::ReplaceData() and related functions in engine/shared/datafile.cpp that can lead to an arbitrary free and out-of-bounds pointer write, possibly resulting in remote code execution. | |
| CVE-2018-18541 | Hig | 7.5 | < 0.7.3.1-bp151.2.3.3 | 0.7.3.1-bp151.2.3.3 | Oct 20, 2018 | In Teeworlds before 0.6.5, connection packets could be forged. There was no challenge-response involved in the connection build up. A remote attacker could send connection packets from a spoofed IP address and occupy all server slots, or even use them for a reflection attack usin |
- affected < 0.7.5-bp151.2.6.1fixed 0.7.5-bp151.2.6.1
CServer::SendMsg in engine/server/server.cpp in Teeworlds 0.7.x before 0.7.5 allows remote attackers to shut down the server.
- affected < 0.7.5-bp151.2.6.1fixed 0.7.5-bp151.2.6.1
Teeworlds before 0.7.4 has an integer overflow when computing a tilemap size.
- affected < 0.7.3.1-bp151.2.3.3fixed 0.7.3.1-bp151.2.3.3
In Teeworlds 0.7.2, there is an integer overflow in CMap::Load() in engine/shared/map.cpp that can lead to a buffer overflow, because multiplication of width and height is mishandled.
- affected < 0.7.3.1-bp151.2.3.3fixed 0.7.3.1-bp151.2.3.3
In Teeworlds 0.7.2, there is an integer overflow in CDataFileReader::Open() in engine/shared/datafile.cpp that can lead to a buffer overflow and possibly remote code execution, because size-related multiplications are mishandled.
- affected < 0.7.3.1-bp151.2.3.3fixed 0.7.3.1-bp151.2.3.3
In Teeworlds 0.7.2, there is a failed bounds check in CDataFileReader::GetData() and CDataFileReader::ReplaceData() and related functions in engine/shared/datafile.cpp that can lead to an arbitrary free and out-of-bounds pointer write, possibly resulting in remote code execution.
- affected < 0.7.3.1-bp151.2.3.3fixed 0.7.3.1-bp151.2.3.3
In Teeworlds before 0.6.5, connection packets could be forged. There was no challenge-response involved in the connection build up. A remote attacker could send connection packets from a spoofed IP address and occupy all server slots, or even use them for a reflection attack usin