Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Off-by-one error in the CSoundFile::ReadAMS function in src/load_ams.cpp in libmodplug before 0.8.8.4 allows remote attackers to cause a denial of service (stack memory corruption) and possibly execute arbitrary code via a crafted AMS file with a large number of samples.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Libmodplug ’CSoundFile::ReadAMS‘ Off-by-one漏洞
Vulnerability Description
Libmodplug是Stephane Denis和Ivan Vecera程序员共同开发的一个用于处理mod类音乐格式的开源函数库。 libmodplug 0.8.8.4之前版本的src/load_ams.cpp中的CSoundFile::ReadAMS函数中存在Off-by-one漏洞。远程攻击者可利用该漏洞借助大样本数的特制AMS文件,导致拒绝服务(堆内存损坏)或可能执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A