Home

Description

An integer overflow vulnerability exists in the write method of the Buffer class in Robocode version 1.9.3.6. The method fails to properly validate the length of data being written, allowing attackers to cause an overflow, potentially leading to buffer overflows and arbitrary code execution. This vulnerability can be exploited by submitting specially crafted inputs that manipulate the data length, leading to potential unauthorized code execution.

PUBLISHED Reserved 2025-12-09 | Published 2025-12-09 | Updated 2025-12-09 | Assigner GovTech CSG




CRITICAL: 10.0CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/AU:Y/R:U/V:D/RE:M/U:Red

Problem types

CWE-190 Integer Overflow or Wraparound

Product status

Default status
unaffected

1.9.3.6 (semver)
affected

Credits

titancaproject@gmail.com reporter

References

github.com/robo-code/robocode/pull/70

cve.org (CVE-2025-14308)

nvd.nist.gov (CVE-2025-14308)

Download JSON