Vulnerabilities > Nethack > High

DATE CVE VULNERABILITY TITLE RISK
2020-03-10 CVE-2020-5254 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Nethack
In NetHack before 3.6.6, some out-of-bound values for the hilite_status option can be exploited.
network
high complexity
nethack CWE-119
8.1
2020-01-28 CVE-2020-5210 Classic Buffer Overflow vulnerability in Nethack
In NetHack before 3.6.5, an invalid argument to the -w command line option can cause a buffer overflow resulting in a crash or remote code execution/privilege escalation.
local
low complexity
nethack CWE-120
7.8
2020-01-28 CVE-2020-5209 Classic Buffer Overflow vulnerability in Nethack
In NetHack before 3.6.5, unknown options starting with -de and -i can cause a buffer overflow resulting in a crash or remote code execution/privilege escalation.
local
low complexity
nethack CWE-120
7.8