Off-by-one error in the CSoundFile::ReadDSM function in src/load_dms.cpp in libmodplug prior to 0.8.8.4 allows remote malicious users to cause a denial of service (memory corruption) and possibly execute arbitrary code via a crafted DSM file with a large number of samples.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
konstanty bialkowski libmodplug 0.8.5 |
||
konstanty bialkowski libmodplug 0.8.7 |
||
konstanty bialkowski libmodplug |
||
konstanty bialkowski libmodplug 0.8.4 |
||
konstanty bialkowski libmodplug 0.8.8.1 |
||
konstanty bialkowski libmodplug 0.8.8.2 |
||
konstanty bialkowski libmodplug 0.8.8 |
||
konstanty bialkowski libmodplug 0.8 |
||
konstanty bialkowski libmodplug 0.8.6 |