FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2024-04-18 11:12:36 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
35aef72c-5c8e-11eb-8309-4ccc6adda413chocolate-doom -- Arbitrary code execution

Michal Dardas from LogicalTrust reports:

The server in Chocolate Doom 3.0.0 and Crispy Doom 5.8.0 doesn't validate the user-controlled num_players value, leading to a buffer overflow. A malicious user can overwrite the server's stack.


Discovery 2020-06-22
Entry 2021-01-22
chocolate-doom
< 3.0.1

crispy-doom
< 5.9.0

https://github.com/chocolate-doom/chocolate-doom/issues/1293
CVE-2020-14983