Valve's Game Networking Sockets prior to version v1.2.0 improperly handles unreliable segments with negative offsets in function SNP_ReceiveUnreliableSegment(), leading to a Heap-Based Buffer Underflow and a free() of memory not from the heap, resulting in a memory corruption and probably even a remote code execution.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: checkpoint

Published: 2020-11-18T14:11:49

Updated: 2024-08-04T08:47:41.048Z

Reserved: 2020-01-07T00:00:00

Link: CVE-2020-6016

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-11-18T15:15:13.193

Modified: 2022-10-21T19:37:44.887

Link: CVE-2020-6016

cve-icon Redhat

No data.