CVE-2017-20225: Ticalc Tiemu

Critical severity, CVSS 9.8. EPSS: 0.8% chance of exploitation in the next 30 days.

TiEmu 2.08 and prior contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by exploiting inadequate boundary checks on user-supplied input. Attackers can trigger the overflow through command-line arguments passed to the application, leveraging ROP gadgets to bypass protections and execute shellcode in the application context.

Affected products

  • Ticalc Tiemu: up to and including 2.0.8

Published 2026-03-28. Last modified 2026-06-17.