CVE-2019-10878: Teeworlds

Critical severity, CVSS 9.8. EPSS: 3.9% chance of exploitation in the next 30 days.

In Teeworlds 0.7.2, there is a failed bounds check in CDataFileReader::GetData() and CDataFileReader::ReplaceData() and related functions in engine/shared/datafile.cpp that can lead to an arbitrary free and out-of-bounds pointer write, possibly resulting in remote code execution.

Affected products

Published 2019-04-05. Last modified 2026-06-17.