vendor:
TeamSpeak Client
by:
SpyEye & Christian Galeone
9
CVSS
CRITICAL
Buffer Overflow
119, 120
CWE
Product Name: TeamSpeak Client
Affected Version From: 3.0.14 & Previous Versions
Affected Version To: 3.0.14 & Previous Versions
Patch Exists: YES
Related CWE: CVE-2014-7221 & CVE-2014-7222
CPE: a:teamspeak:teamspeak_client
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Win7
2014
TeamSpeak Client v3.0.14 – Buffer Overflow Vulnerability
TeamSpeak Client v3.0.14 is vulnerable to buffer overflow attacks. Sending a specially crafted message to the chat/server tab of a channel/server can cause a mass crash of the client and the users connected with a vulnerable version. The exploit code must be sent into the chat/server tab for a channel/server crash effect.
Mitigation:
Upgrade to the latest version of TeamSpeak Client.