CVE-2020-14983
22.06.2020, 20:15
The server in Chocolate Doom 3.0.0 and Crispy Doom 5.8.0 doesn't validate the user-controlled num_players value, leading to a buffer overflow. A malicious user can overwrite the server's stack.
| Vendor | Product | Version |
|---|---|---|
| chocolate-doom | chocolate_doom | 3.0.0 |
| chocolate-doom | crispy_doom | 5.8.0 |
| opensuse | leap | 15.1 |
| opensuse | leap | 15.2 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| chocolate-doom |
| ||||||||||||||||||||||||||
| crispy-doom |
|
References