Description
rAthena is an open-source cross-platform massively multiplayer online role playing game (MMORPG) server. Versions prior to commit 0cc348b are missing a bound check in `chclif_parse_moveCharSlot` that can result in reading and writing out of bounds using input from the user. The problem has been fixed in commit 0cc348b.
Problem types
CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
Product status
References
github.com/...athena/security/advisories/GHSA-pjh7-jgr8-4ff6
github.com/...ommit/0cc348b186bbcc3c604c17c39589a319f27d469b