CVE-2018-25251 PUBLISHED

Snes9K 0.0.9z Buffer Overflow SEH via Netplay Socket

Assigner: VulnCheck
Reserved: 04.04.2026 Published: 04.04.2026 Updated: 04.04.2026

Snes9K 0.0.9z contains a buffer overflow vulnerability in the Netplay Socket Port Number field that allows local attackers to trigger a structured exception handler (SEH) overwrite. Attackers can craft a malicious payload and paste it into the Socket Port Number field via the Netplay Options menu to achieve code execution through SEH chain exploitation.

Metrics

CVSS Vector: CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
CVSS Score: 8.6

Product Status

Vendor Sourceforge
Product Snes9K 0.0.9z
Versions
  • Version 0.0.9z is affected

Credits

  • Abdullah Alıç finder

References

Problem Types

  • Out-of-bounds Write CWE