Description
An out-of-bounds read vulnerability in the TeamViewer DEX Client (former 1E Client) - Content Distribution Service (NomadBranch.exe) prior version 26.1 for Windows allows a remote attacker to leak stack memory and cause a denial of service via a crafted request. The leaked stack memory could be used to bypass ASLR remotely and facilitate exploitation of other vulnerabilities on the affected system.
Problem types
Product status
Any version before 26.1
Credits
Threat Hunt Team of Bank of America
References
www.teamviewer.com/...enter/security-bulletins/tv-2026-1001/