PT-2019-13722 · Milkytracker+2 · Milkytracker+2

Fredric

·

Published

2019-08-01

·

Updated

2023-01-20

·

CVE-2019-14496

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions MilkyTracker version 1.02.00
Description The issue is related to a stack-based buffer overflow in the LoaderXM::load function in LoaderXM.cpp within the milkyplay component of MilkyTracker. This overflow can occur due to improper handling of data, potentially leading to exploitation.
Recommendations For MilkyTracker version 1.02.00, consider applying a patch or fix that addresses the stack-based buffer overflow in the LoaderXM::load function to prevent potential exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Corruption

Weakness Enumeration

Related Identifiers

ALT-PU-2021-3029
ALT-PU-2022-2443
CVE-2019-14496
DLA-1961-1
DLA-2292-1
USN-4499-1

Affected Products

Alt Linux
Milkytracker
Ubuntu