CVE-2011-1761: Buffer Overflow
Multiple stack-based buffer overflows in the (1) abcnewmacro and (2) abcnewumacro functions in src/loadabc.cpp in libmodplug before 0.8.8.3 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted ABC file. NOTE: some of these details are obtained from third party information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-1761?
CVE-2011-1761 is considered a high severity vulnerability due to the potential for remote code execution and denial of service.
How do I fix CVE-2011-1761?
To fix CVE-2011-1761, upgrade to libmodplug version 0.8.8.3 or later.
What are the possible impacts of CVE-2011-1761?
The impacts of CVE-2011-1761 include denial of service crashes and potential arbitrary code execution through crafted ABC files.
Which versions of libmodplug are affected by CVE-2011-1761?
Versions of libmodplug prior to 0.8.8.3, including 0.8.5, 0.8.6, 0.8.7, 0.8.8, and 0.8.8.1, are affected by CVE-2011-1761.
Can CVE-2011-1761 be exploited remotely?
Yes, CVE-2011-1761 can be exploited remotely by attackers using crafted ABC files.