← Back

Teeworlds

teeworlds

Vendor: Teeworlds • 11 CVEs

CVEs (11)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Teeworlds
1Teeworlds
Jan 31, 2025
May 23, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
A heap use-after-free in the component CDataFileReader::GetItem of teeworlds v0.7.5 allows attackers to cause a Denial of Service (DoS) via a crafted map file.
1Teeworlds
1Teeworlds
Nov 21, 2024
May 23, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
A memory leak in the component CConsole::Chain of Teeworlds v0.7.5 allows attackers to cause a Denial of Service (DoS) via opening a crafted file.
2Fedoraproject
Teeworlds
2Fedora
Teeworlds
Nov 21, 2024
Dec 15, 2021
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Teeworlds up to and including 0.7.5 is vulnerable to Buffer Overflow. A map parser does not validate m_Channels value coming from a map file, leading to a buffer overflow. A malicious server may offer a specially crafted...Show more
Teeworlds up to and including 0.7.5 is vulnerable to Buffer Overflow. A map parser does not validate m_Channels value coming from a map file, leading to a buffer overflow. A malicious server may offer a specially crafted map that will overwrite client's stack causing denial of service or code execution.Show less
5Canonical
DebianFedoraproject+2 more
6Backports Sle
Debian LinuxFedora+3 more
Nov 21, 2024
Apr 22, 2020
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
CServer::SendMsg in engine/server/server.cpp in Teeworlds 0.7.x before 0.7.5 allows remote attackers to shut down the server.
2Opensuse
Teeworlds
2Leap
Teeworlds
Nov 21, 2024
Apr 22, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Teeworlds before 0.7.4 has an integer overflow when computing a tilemap size.
1Teeworlds
1Teeworlds
Nov 21, 2024
Apr 5, 2019
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
In Teeworlds 0.7.2, there is an integer overflow in CMap::Load() in engine/shared/map.cpp that can lead to a buffer overflow, because multiplication of width and height is mishandled.
1Teeworlds
1Teeworlds
Nov 21, 2024
Apr 5, 2019
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
In Teeworlds 0.7.2, there is an integer overflow in CDataFileReader::Open() in engine/shared/datafile.cpp that can lead to a buffer overflow and possibly remote code execution, because size-related multiplications are mi...Show more
In Teeworlds 0.7.2, there is an integer overflow in CDataFileReader::Open() in engine/shared/datafile.cpp that can lead to a buffer overflow and possibly remote code execution, because size-related multiplications are mishandled.Show less
1Teeworlds
1Teeworlds
Nov 21, 2024
Apr 5, 2019
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
In Teeworlds 0.7.2, there is a failed bounds check in CDataFileReader::GetData() and CDataFileReader::ReplaceData() and related functions in engine/shared/datafile.cpp that can lead to an arbitrary free and out-of-bounds...Show more
In Teeworlds 0.7.2, there is a failed bounds check in CDataFileReader::GetData() and CDataFileReader::ReplaceData() and related functions in engine/shared/datafile.cpp that can lead to an arbitrary free and out-of-bounds pointer write, possibly resulting in remote code execution.Show less
2Debian
Teeworlds
2Debian Linux
Teeworlds
Nov 21, 2024
Oct 20, 2018
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In Teeworlds before 0.6.5, connection packets could be forged. There was no challenge-response involved in the connection build up. A remote attacker could send connection packets from a spoofed IP address and occupy all...Show more
In Teeworlds before 0.6.5, connection packets could be forged. There was no challenge-response involved in the connection build up. A remote attacker could send connection packets from a spoofed IP address and occupy all server slots, or even use them for a reflection attack using map download packets.Show less
2Fedoraproject
Teeworlds
2Fedora
Teeworlds
May 13, 2026
Feb 22, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
The CClient::ProcessServerPacket method in engine/client/client.cpp in Teeworlds before 0.6.4 allows remote servers to write to arbitrary physical memory locations and possibly execute arbitrary code via vectors involvin...Show more
The CClient::ProcessServerPacket method in engine/client/client.cpp in Teeworlds before 0.6.4 allows remote servers to write to arbitrary physical memory locations and possibly execute arbitrary code via vectors involving snap handling.Show less
1Teeworlds
1Teeworlds
May 6, 2026
Dec 9, 2014
N/A· v4
N/A· v3
6.4 MEDIUM· v2
engine/server/server.cpp in Teeworlds 0.6.x before 0.6.3 allows remote attackers to read memory and cause a denial of service (crash) via unspecified vectors.