CVE-2016-20040

HIGH

TiEmu 3.03-nogdb+dfsg-3 Buffer Overflow via ROM Parameter

Title source: cna
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2016-20040. PoCs published by Juan Sacco.

AI-analyzed exploit summary This exploit demonstrates a local buffer overflow in Texas Instruments Emulator (TiEmu) version 3.03-nogdb+dfsg-3, leveraging a crafted ROM file to trigger a segmentation fault and execute arbitrary shellcode.

Description

TiEmu 3.03-nogdb+dfsg-3 contains a buffer overflow vulnerability in the ROM parameter handling that allows local attackers to crash the application or execute arbitrary code. Attackers can supply an oversized ROM parameter to the tiemu command-line interface to overflow the stack buffer and overwrite the instruction pointer with malicious addresses.

Exploits (1)

exploitdb WORKING POC
by Juan Sacco · pythonlocallinux
https://www.exploit-db.com/exploits/39692

This exploit demonstrates a local buffer overflow in Texas Instruments Emulator (TiEmu) version 3.03-nogdb+dfsg-3, leveraging a crafted ROM file to trigger a segmentation fault and execute arbitrary shellcode.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Texas Instruments Emulator (TiEmu) 3.03-nogdb+dfsg-3
No auth needed
Prerequisites: Local access to the target system · TiEmu installed on the system
devstral-2 · analyzed Apr 08, 2026 Full analysis →

References (3)

Core 3
Core References
Exploit exploit
ExploitDB-39692
https://www.exploit-db.com/exploits/39692
Product product
Official Product Homepage
http://lpg.ticalc.org/prj_tiemu/
Third Party Advisory third-party-advisory
VulnCheck Advisory: TiEmu 3.03-nogdb+dfsg-3 Buffer Overflow via ROM Parameter
https://www.vulncheck.com/advisories/tiemu-nogdb-dfsg-3-buffer-overflow-via-rom-parameter

Scores

CVSS v3 8.4
EPSS 0.0016
EPSS Percentile 5.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-22
Status published
Products (1)
ticalc/Texas Instrument Emulator 3.03
Published Mar 28, 2026
Tracked Since Mar 29, 2026