CVE-2011-2914
07.06.2012, 19:55
Off-by-one error in the CSoundFile::ReadDSM function in src/load_dms.cpp in libmodplug before 0.8.8.4 allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via a crafted DSM file with a large number of samples.Enginsight
| Vendor | Product | Version |
|---|---|---|
| konstanty_bialkowski | libmodplug | 𝑥 ≤ 0.8.8.3 |
| konstanty_bialkowski | libmodplug | 0.8 |
| konstanty_bialkowski | libmodplug | 0.8.4 |
| konstanty_bialkowski | libmodplug | 0.8.5 |
| konstanty_bialkowski | libmodplug | 0.8.6 |
| konstanty_bialkowski | libmodplug | 0.8.7 |
| konstanty_bialkowski | libmodplug | 0.8.8 |
| konstanty_bialkowski | libmodplug | 0.8.8.1 |
| konstanty_bialkowski | libmodplug | 0.8.8.2 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|
| gst-plugins-bad0.10 |
| ||||||||||
| libmodplug |
|
Common Weakness Enumeration
References