CVE-2011-1761
libmodplug - several
EPSS 11.1%
描述
Multiple stack-based buffer overflows in the (1) abc_new_macro and (2) abc_new_umacro functions in src/load_abc.cpp in libmodplug before 0.8.8.3 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted ABC file. NOTE: some of these details are obtained from third party information.
如何修補 CVE-2011-1761
要修補 CVE-2011-1761,請將受影響套件升級到下列已修補版本。
- Debian/libmodplug—升級至 1:0.8.8.4-1 或更新版本
- Debian/libmodplug—升級至 1:0.8.8.1-1+squeeze2 或更新版本
CVE-2011-1761 正在被利用嗎?
中等 — EPSS 為 11.1%,可持續追蹤但非最高優先。
受影響套件(2)
- from 0, < 1:0.8.8.4-1
- from 0, < 1:0.8.8.1-1+squeeze2