CVE-2025-14308

An integer overflow vulnerability exists in the write method of the Buffer class in Robocode version 1.9.3.6. The method fails to properly validate the length of data being written, allowing attackers to cause an overflow, potentially leading to buffer overflows and arbitrary code execution. This vulnerability can be exploited by submitting specially crafted inputs that manipulate the data length, leading to potential unauthorized code execution.
References
Link Resource
https://github.com/robo-code/robocode/pull/70 Issue Tracking Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:robocode:robocode:1.9.3.6:*:*:*:*:*:*:*

History

05 Jan 2026, 16:20

Type Values Removed Values Added
CPE cpe:2.3:a:robocode:robocode:1.9.3.6:*:*:*:*:*:*:*
First Time Robocode robocode
Robocode
References () https://github.com/robo-code/robocode/pull/70 - () https://github.com/robo-code/robocode/pull/70 - Issue Tracking, Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8

09 Dec 2025, 16:17

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-09 16:17

Updated : 2026-01-05 16:20


NVD link : CVE-2025-14308

Mitre link : CVE-2025-14308

CVE.ORG link : CVE-2025-14308


JSON object : View

Products Affected

robocode

  • robocode
CWE
CWE-190

Integer Overflow or Wraparound