An out-of-bounds read vulnerability in the TeamViewer DEX Client (former 1E Client) - Content Distribution Service (NomadBranch.exe) prior version 26.1 for Windows allows an attacker on the adjacent network to cause information disclosure or denial-of-service via a special crafted packet. The leaked memory could be used to bypass ASLR and facilitate further exploitation.
Advisories

No advisories yet.

Fixes

Solution

Update the TeamViewer DEX Client (1E Client) to the latest available version.


Workaround

No workaround given by the vendor.

History

Thu, 29 Jan 2026 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 29 Jan 2026 09:00:00 +0000

Type Values Removed Values Added
Description An out-of-bounds read vulnerability in the TeamViewer DEX Client (former 1E Client) - Content Distribution Service (NomadBranch.exe) prior version 26.1 for Windows allows an attacker on the adjacent network to cause information disclosure or denial-of-service via a special crafted packet. The leaked memory could be used to bypass ASLR and facilitate further exploitation.
Title Out-of-bounds read vulnerability in Content Distribution Service
Weaknesses CWE-125
References
Metrics cvssV3_1

{'score': 5.4, 'vector': 'CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: TV

Published:

Updated: 2026-01-29T16:04:44.937Z

Reserved: 2026-01-14T13:54:40.322Z

Link: CVE-2026-23568

cve-icon Vulnrichment

Updated: 2026-01-29T16:04:40.962Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-01-29T09:16:04.473

Modified: 2026-01-29T16:31:00.867

Link: CVE-2026-23568

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses