Integer Overflow Vulnerability in libmodplug Affects Sound Processing
CVE-2011-2911

Currently unrated

Key Information:

Vendor
CVE Published:
7 June 2012

What is CVE-2011-2911?

The libmodplug library, utilized in sound file processing, has an integer overflow vulnerability in the CSoundFile::ReadWav function. This flaw allows attackers to craft malicious WAV files that can trigger a heap-based buffer overflow, potentially leading to a denial of service or execution of arbitrary code. Users with versions prior to 0.8.8.4 are particularly at risk, emphasizing the need for an upgrade to mitigate these security threats.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.