CVE-2020-23909: High severity advancemame vulnerability
Published Jul 18, 2023
·Updated
Heap-based buffer over-read in function pngconvert4 in file pngex.cc in AdvanceMAME through 2.1.
Affected Software
1 affected component
AdvanceMAME AdvanceMAME<=2.1
Remediation
Patch Available
Event History
Jul 18, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is CVE-2020-23909?
CVE-2020-23909 is a vulnerability in the AdvanceMAME software through version 2.1 that allows for a heap-based buffer over-read in the png_convert_4 function.
2
How severe is CVE-2020-23909?
CVE-2020-23909 has a severity rating of 7.1 (high).
3
How does CVE-2020-23909 affect AdvanceMAME?
CVE-2020-23909 affects AdvanceMAME versions up to and including 2.1.
4
What is the Common Weakness Enumeration (CWE) ID for CVE-2020-23909?
The CWE ID for CVE-2020-23909 is 125.
5
Is there a fix available for CVE-2020-23909?
At the time of writing, there is no known fix available for CVE-2020-23909. It is recommended to stay updated with the latest software releases and patches from the vendor.