CVE-2019-14690: Buffer Overflow
Published Aug 6, 2019
·Updated
AdPlug 2.3.1 has a heap-based buffer overflow in CxadbmfPlayer::bmfconvertstream() in bmf.cpp.
Affected Software
3 affected components
Adplug Project Adplug=2.3.1
Fedoraproject Fedora=32
Fedoraproject Fedora=33
Event History
Aug 6, 2019
CVE Published
via MITRE·12:03 PM
Data Sourced
via MITRE·12:03 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-14690?
CVE-2019-14690 has been classified with high severity due to its potential for remote code execution.
2
How do I fix CVE-2019-14690?
To fix CVE-2019-14690, you should upgrade to a patched version of AdPlug beyond 2.3.1.
3
Which versions of AdPlug are affected by CVE-2019-14690?
AdPlug version 2.3.1 is the only version known to be affected by CVE-2019-14690.
4
Is CVE-2019-14690 exploitable remotely?
Yes, CVE-2019-14690 is exploitable remotely, allowing an attacker to execute arbitrary code.
5
What systems are impacted by CVE-2019-14690?
CVE-2019-14690 impacts AdPlug on Fedora versions 32 and 33, as well as version 2.3.1.