4.3
CVE-2007-6720
- EPSS 2.35%
- Veröffentlicht 20.01.2009 16:30:00
- Zuletzt bearbeitet 16.06.2026 22:48:38
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
libmikmod 3.1.9 through 3.2.0, as used by MikMod, SDL-mixer, and possibly other products, relies on the channel count of the last loaded song, rather than the currently playing song, for certain playback calculations, which allows user-assisted attackers to cause a denial of service (application crash) by loading multiple songs (aka MOD files) with different numbers of channels.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Igno Saitz ≫ Libmikmod Version3.1.9-1
Igno Saitz ≫ Libmikmod Version3.1.9-2
Igno Saitz ≫ Libmikmod Version3.1.9-3
Igno Saitz ≫ Libmikmod Version3.1.9-4
Igno Saitz ≫ Libmikmod Version3.1.9-5
Igno Saitz ≫ Libmikmod Version3.1.9-6
Igno Saitz ≫ Libmikmod Version3.1.10-1
Igno Saitz ≫ Libmikmod Version3.1.10-2
Igno Saitz ≫ Libmikmod Version3.1.10-3
Igno Saitz ≫ Libmikmod Version3.1.10-4
Igno Saitz ≫ Libmikmod Version3.1.10-5
Igno Saitz ≫ Libmikmod Version3.1.11-1
Igno Saitz ≫ Libmikmod Version3.1.11-2
Igno Saitz ≫ Libmikmod Version3.1.11-3
Igno Saitz ≫ Libmikmod Version3.1.11-4
Igno Saitz ≫ Libmikmod Version3.1.11-5
Igno Saitz ≫ Libmikmod Version3.1.11-6
Igno Saitz ≫ Libmikmod Version3.1.12
Igno Saitz ≫ Libmikmod Version3.2.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.35% | 0.814 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:N/A:P
|
http://lists.opensuse.org/opensuse-security-announce/2009-03/msg00001.html
http://secunia.com/advisories/34259
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=422021
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=461519
http://openwall.com/lists/oss-security/2009/01/13/2
http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
http://www.securityfocus.com/bid/33235
https://bugzilla.redhat.com/show_bug.cgi?id=479829
https://www.redhat.com/archives/fedora-package-announce/2009-August/msg01305.html
https://www.redhat.com/archives/fedora-package-announce/2009-August/msg01312.html