CVE-2019-17113
- EPSS 1.64%
- Published 04.10.2019 00:15:10
- Last modified 21.11.2024 04:31:43
In libopenmpt before 0.3.19 and 0.4.x before 0.4.9, ModPlug_InstrumentName and ModPlug_SampleName in libopenmpt_modplug.c do not restrict the lengths of libmodplug output-buffer strings in the C API, leading to a buffer overflow.
CVE-2018-20860
- EPSS 0.34%
- Published 30.07.2019 19:15:13
- Last modified 21.11.2024 04:02:20
libopenmpt before 0.3.13 allows a crash with malformed MED files.
CVE-2018-20861
- EPSS 0.41%
- Published 30.07.2019 19:15:13
- Last modified 21.11.2024 04:02:20
libopenmpt before 0.3.11 allows a crash with certain malformed custom tunings in MPTM files.
CVE-2019-14380
- EPSS 0.29%
- Published 30.07.2019 19:15:13
- Last modified 21.11.2024 04:26:37
libopenmpt before 0.4.5 allows a crash during playback due to an out-of-bounds read in XM and MT2 files.
CVE-2019-14382
- EPSS 0.53%
- Published 30.07.2019 19:15:13
- Last modified 21.11.2024 04:26:38
DSM in libopenmpt before 0.4.2 allows an assertion failure during file parsing with debug STLs.
CVE-2019-14383
- EPSS 0.44%
- Published 30.07.2019 19:15:13
- Last modified 21.11.2024 04:26:38
J2B in libopenmpt before 0.4.2 allows an assertion failure during file parsing with debug STLs.
CVE-2019-14381
- EPSS 0.39%
- Published 30.07.2019 13:15:17
- Last modified 21.11.2024 04:26:38
libopenmpt before 0.4.3 allows a crash due to a NULL pointer dereference when doing a portamento from an OPL instrument to an empty instrument note map slot.
CVE-2018-11710
- EPSS 0.59%
- Published 04.06.2018 13:29:00
- Last modified 21.11.2024 03:43:52
soundlib/pattern.h in libopenmpt before 0.3.9 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted AMS file because of an invalid write near address 0 in an out-of-memory sit...
CVE-2018-10017
- EPSS 0.79%
- Published 11.04.2018 05:29:00
- Last modified 21.11.2024 03:40:41
soundlib/Snd_fx.cpp in OpenMPT before 1.27.07.00 and libopenmpt before 0.3.8 allows remote attackers to cause a denial of service (out-of-bounds read) via an IT or MO3 file with many nested pattern loops.
CVE-2018-6611
- EPSS 0.4%
- Published 04.02.2018 12:29:00
- Last modified 21.11.2024 04:10:59
soundlib/Load_stp.cpp in OpenMPT through 1.27.04.00, and libopenmpt before 0.3.6, has an out-of-bounds read via a malformed STP file.