CVE-2025-14308

Source
https://cve.org/CVERecord?id=CVE-2025-14308
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-14308.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-14308
Downstream
Published
2025-12-09T16:17:38.797Z
Modified
2026-03-12T17:37:52.241153Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

An integer overflow vulnerability exists in the write method of the Buffer class in Robocode version 1.9.3.6. The method fails to properly validate the length of data being written, allowing attackers to cause an overflow, potentially leading to buffer overflows and arbitrary code execution. This vulnerability can be exploited by submitting specially crafted inputs that manipulate the data length, leading to potential unauthorized code execution.

References

Affected packages

Git /

Affected ranges

Database specific

unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "1.9.3.6"
            }
        ]
    }
]
source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-14308.json"