PT-2016-7988 · Debian+1 · Tiemu

Published

2016-01-01

·

Updated

2026-05-01

·

CVE-2016-20040

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions TiEmu version 3.03-nogdb+dfsg-3
Description A buffer overflow exists in the ROM parameter handling. Local attackers can provide an oversized ROM parameter to the tiemu command-line interface to overflow the stack buffer and overwrite the instruction pointer with malicious addresses, potentially leading to application crashes or arbitrary code execution.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2016-20040

Affected Products

Tiemu