CVE-2007-6720
EPSS 1.1%Published: 1/20/2009Modified: 4/28/2026
Also known as:DEBIAN-CVE-2007-6720
Description
libmikmod 3.1.9 through 3.2.0, as used by MikMod, SDL-mixer, and possibly other products, relies on the channel count of the last loaded song, rather than the currently playing song, for certain playback calculations, which allows user-assisted attackers to cause a denial of service (application crash) by loading multiple songs (aka MOD files) with different numbers of channels.
Affected packages (2)
- Debian/libmikmodfrom 0, < 3.1.11-6.1
- Debian/sdl-mixer1.2from 0, < 1.2.8-1