Vulnerability Description
Race condition in Blizzard Overwatch 1.15.0.2 allows remote authenticated users to cause a denial of service (season bans and SR losses for other users) by leaving a competitive match at a specific time during the initial loading of that match.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Blizzard | Overwatch | 1.15.0.2 |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/101087Third Party AdvisoryVDB Entry
- https://us.battle.net/forums/en/overwatch/topic/20759216554Third Party Advisory
- https://www.reddit.com/r/Overwatch/comments/72euqx/theres_a_bug_out_there_that_cThird Party Advisory
- http://www.securityfocus.com/bid/101087Third Party AdvisoryVDB Entry
- https://us.battle.net/forums/en/overwatch/topic/20759216554Third Party Advisory
- https://www.reddit.com/r/Overwatch/comments/72euqx/theres_a_bug_out_there_that_cThird Party Advisory
FAQ
What is CVE-2017-14748?
CVE-2017-14748 is a vulnerability with a CVSS score of 5.3 (MEDIUM). Race condition in Blizzard Overwatch 1.15.0.2 allows remote authenticated users to cause a denial of service (season bans and SR losses for other users) by leaving a competitive match at a specific ti...
How severe is CVE-2017-14748?
CVE-2017-14748 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-14748?
Check the references section above for vendor advisories and patch information. Affected products include: Blizzard Overwatch.