Medium severity6.5NVD Advisory· Published Jul 30, 2019· Updated Jun 17, 2026
CVE-2018-20860
CVE-2018-20860
Description
libopenmpt before 0.3.13 allows a crash with malformed MED files.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
9cpe:2.3:a:openmpt:libopenmpt:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:openmpt:libopenmpt:*:*:*:*:*:*:*:*range: <0.3.13
- (no CPE)range: <0.3.13
- libopenmpt/libopenmptdescription
- osv-coords4 versionspkg:rpm/opensuse/libopenmpt&distro=openSUSE%20Leap%2015.0pkg:rpm/opensuse/libopenmpt&distro=openSUSE%20Leap%2015.1pkg:rpm/suse/libopenmpt&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015pkg:rpm/suse/libopenmpt&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015%20SP1
< 0.3.17-lp150.7.1+ 3 more
- (no CPE)range: < 0.3.17-lp150.7.1
- (no CPE)range: < 0.3.17-lp151.2.3.1
- (no CPE)range: < 0.3.17-2.7.1
- (no CPE)range: < 0.3.17-2.7.1
Patches
Vulnerability mechanics
References
3- lib.openmpt.org/libopenmpt/2018/10/21/security-updates-0.3.13-0.2.10933-beta36-0.2.7561-beta20.5-p11-0.2.7386-beta20.3-p14/nvdPatchRelease Notes
- lists.opensuse.org/opensuse-security-announce/2019-09/msg00084.htmlnvdBroken LinkMailing ListThird Party Advisory
- lists.opensuse.org/opensuse-security-announce/2019-09/msg00085.htmlnvdBroken LinkMailing ListThird Party Advisory
News mentions
0No linked articles in our index yet.