CVE-2016-9400: The CClient::ProcessServerPacket method in engine/client/client.cpp in ...

Severity: Critical

CVSS Score: 9.8

The CClient::ProcessServerPacket method in engine/client/client.cpp in Teeworlds before 0.6.4 allows remote servers to write to arbitrary physical memory locations and possibly execute arbitrary code via vectors involving snap handling.