RSS   Vulnerabilities for 'DUMB'   RSS

2006-07-18
 
CVE-2006-3668

CWE-119
 

 
Heap-based buffer overflow in the it_read_envelope function in Dynamic Universal Music Bibliotheque (DUMB) 0.9.3 and earlier and current CVS as of 20060716, including libdumb, allows user-assisted attackers to execute arbitrary code via a ".it" (Impulse Tracker) file with an envelope with a large number of nodes.

 


Copyright 2024, cxsecurity.com

 

Back to Top