A heap use-after-free in the component CDataFileReader::GetItem of teeworlds v0.7.5 allows attackers to cause a Denial of Service (DoS) via a crafted map file.
References
Link | Resource |
---|---|
https://gist.github.com/manba-bryant/9ca95d69c65f4d2c55946932c946fb9b | Third Party Advisory |
https://github.com/teeworlds/teeworlds/issues/2970 | Exploit Issue Tracking |
https://mmmds.pl/fuzzing-map-parser-part-1-teeworlds/ | Exploit Third Party Advisory |
https://gist.github.com/manba-bryant/9ca95d69c65f4d2c55946932c946fb9b | Third Party Advisory |
https://github.com/teeworlds/teeworlds/issues/2970 | Exploit Issue Tracking |
https://mmmds.pl/fuzzing-map-parser-part-1-teeworlds/ | Exploit Third Party Advisory |
Configurations
History
No history.
Information
Published : 2023-05-23 20:15
Updated : 2025-01-31 14:15
NVD link : CVE-2023-31518
Mitre link : CVE-2023-31518
CVE.ORG link : CVE-2023-31518
JSON object : View
Products Affected
teeworlds
- teeworlds
CWE
CWE-416
Use After Free