VYPR

Dumb

by Dynamic Universal Music Bibliotheque

CVEs (1)

  • CVE-2006-3668Jul 18, 2006
    risk 0.04cvss epss 0.18

    Heap-based buffer overflow in the it_read_envelope function in Dynamic Universal Music Bibliotheque (DUMB) 0.9.3 and earlier and current CVS as of 20060716, including libdumb, allows user-assisted attackers to execute arbitrary code via a ".it" (Impulse Tracker) file with an envelope with a large number of nodes.