Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9qmp-r7mf-m39c

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In libopenmpt before 0.3.19 and 0.4.x before 0.4.9, ModPlug_InstrumentName and ModPlug_SampleName in libopenmpt_modplug.c do not restrict the lengths of libmodplug output-buffer strings in the C API, leading to a buffer overflow.

In libopenmpt before 0.3.19 and 0.4.x before 0.4.9, ModPlug_InstrumentName and ModPlug_SampleName in libopenmpt_modplug.c do not restrict the lengths of libmodplug output-buffer strings in the C API, leading to a buffer overflow.

EPSS

Процентиль: 82%
0.01642
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 6 лет назад

In libopenmpt before 0.3.19 and 0.4.x before 0.4.9, ModPlug_InstrumentName and ModPlug_SampleName in libopenmpt_modplug.c do not restrict the lengths of libmodplug output-buffer strings in the C API, leading to a buffer overflow.

CVSS3: 9.8
nvd
больше 6 лет назад

In libopenmpt before 0.3.19 and 0.4.x before 0.4.9, ModPlug_InstrumentName and ModPlug_SampleName in libopenmpt_modplug.c do not restrict the lengths of libmodplug output-buffer strings in the C API, leading to a buffer overflow.

CVSS3: 9.8
debian
больше 6 лет назад

In libopenmpt before 0.3.19 and 0.4.x before 0.4.9, ModPlug_Instrument ...

suse-cvrf
больше 6 лет назад

Security update for libopenmpt

suse-cvrf
больше 6 лет назад

Security update for libopenmpt

EPSS

Процентиль: 82%
0.01642
Низкий