Teeworlds · Teeworlds · CVE-2020-12066
**Name of the Vulnerable Software and Affected Versions**
Teeworlds versions 0.7.x through 0.7.4
Teeworlds version 0.7.5 is not affected, so the range can be simplified to versions prior to 0.7.5.
Corrected version:
Teeworlds versions prior to 0.7.5
**Description**
The issue is related to insufficient input validation in the `CServer::SendMsg` function, located in `engine/server/server.cpp`. This allows remote attackers to shut down the server, resulting in a denial of service.
**Recommendations**
For Teeworlds versions prior to 0.7.5, update to version 0.7.5 or later to resolve the issue. As a temporary workaround, consider restricting access to the `CServer::SendMsg` function until a patch is available.