PT-2018-14503 · Teeworlds+2 · Teeworlds+2
Heinrich5991
·
Published
2018-10-20
·
Updated
2019-08-24
·
CVE-2018-18541
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Teeworlds versions prior to 0.6.5
Description
The issue allows a remote attacker to forge connection packets due to the lack of a challenge-response mechanism during connection setup. This can lead to occupying all server slots or conducting a reflection attack using map download packets.
Recommendations
For versions prior to 0.6.5, update to version 0.6.5 or later to resolve the issue.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Suse
Teeworlds