In Teeworlds 0.7.2, there is an integer overflow in CMap::Load() in engine/shared/map.cpp that can lead to a buffer overflow, because multiplication of width and height is mishandled.
References
Configurations
Information
Published : 2019-04-04 23:29
Updated : 2019-05-07 12:29
NVD link : CVE-2019-10877
Mitre link : CVE-2019-10877
JSON object : View
CWE
CWE-190
Integer Overflow or Wraparound
Products Affected
teeworlds
- teeworlds