CVE-2016-9400: Fedoraproject Fedora
Critical severity, CVSS 9.8. EPSS: 3.6% chance of exploitation in the next 30 days.
The CClient::ProcessServerPacket method in engine/client/client.cpp in Teeworlds before 0.6.4 allows remote servers to write to arbitrary physical memory locations and possibly execute arbitrary code via vectors involving snap handling.
Affected products
- Fedoraproject Fedora: version 23 only
- Teeworlds Teeworlds: before 0.6.4 (fixed in 0.6.4)
Published 2017-02-22. Last modified 2026-06-17.