CVE Published: 02/12/2020 |
CVE Updated: 04/08/2024 |
CVE Year: 2020 Source: checkpoint |
Vendor: n/a |
Product: Game Networking Sockets Status : PUBLISHED
CVE-2020-6018 Description
Valve\'s Game Networking Sockets prior to version v1.2.0 improperly handles long encrypted messages in function AES_GCM_DecryptContext::Decrypt() when compiled using libsodium, leading to a Stack-Based Buffer Overflow and resulting in a memory corruption and possibly even a remote code execution.