milkytracker/MilkyTracker

milkytracker/MilkyTracker

Releases12
Frequency1 year 3 weeks
Last Release
Stars2.05K
A Fasttracker II compatible music editor

CVE History

CVEPublishedCVSS v3CVSS v2
7.8 HIGH

MilkyTracker v1.03.00 was discovered to contain a stack overflow via the component LoaderXM::load. This vulnerability is triggered when the program is supplied a crafted XM module file.

5.5 MEDIUM4.3 MEDIUM

PlayerGeneric.cpp in MilkyTracker through 1.02.00 has a use-after-free in the PlayerGeneric destructor.

7.8 HIGH6.8 MEDIUM

LoaderXM::load in LoaderXM.cpp in milkyplay in MilkyTracker 1.02.00 has a stack-based buffer overflow.

7.8 HIGH6.8 MEDIUM

ModuleEditor::convertInstrument in tracker/ModuleEditor.cpp in MilkyTracker 1.02.00 has a heap-based buffer overflow.

5.5 MEDIUM4.3 MEDIUM

XMFile::read in XMFile.cpp in milkyplay in MilkyTracker 1.02.00 has a heap-based buffer overflow.