An integer overflow vulnerability exists in the write method of the Buffer class in Robocode version 1.9.3.6. The method fails to properly validate the length of data being written, allowing attackers to cause an overflow, potentially leading to buffer overflows and arbitrary code execution. This vulnerability can be exploited by submitting specially crafted inputs that manipulate the data length, leading to potential unauthorized code execution.
References
| Link | Resource |
|---|---|
| https://github.com/robo-code/robocode/pull/70 | Issue Tracking Vendor Advisory |
Configurations
History
05 Jan 2026, 16:20
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:robocode:robocode:1.9.3.6:*:*:*:*:*:*:* | |
| First Time |
Robocode robocode
Robocode |
|
| References | () https://github.com/robo-code/robocode/pull/70 - Issue Tracking, Vendor Advisory | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
09 Dec 2025, 16:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-12-09 16:17
Updated : 2026-01-05 16:20
NVD link : CVE-2025-14308
Mitre link : CVE-2025-14308
CVE.ORG link : CVE-2025-14308
JSON object : View
Products Affected
robocode
- robocode
CWE
CWE-190
Integer Overflow or Wraparound
