Vendor
stepmania
Products
1
CVEs
2
Across products
2
Status
Private
Products
1- 2 CVEs
Recent CVEs
2| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-20412 | Med | 0.42 | 6.5 | 0.01 | Dec 26, 2020 | lib/codebook.c in libvorbis before 1.3.6, as used in StepMania 5.0.12 and other products, has insufficient array bounds checking via a crafted OGG file. NOTE: this may overlap CVE-2018-5146. | ||
| CVE-2022-25010 | Cri | 0.00 | 9.1 | 0.01 | Mar 1, 2022 | The component /rootfs in RageFile of Stepmania v5.1b2 and below allows attackers access to the entire file system. |
- risk 0.42cvss 6.5epss 0.01
lib/codebook.c in libvorbis before 1.3.6, as used in StepMania 5.0.12 and other products, has insufficient array bounds checking via a crafted OGG file. NOTE: this may overlap CVE-2018-5146.
- risk 0.00cvss 9.1epss 0.01
The component /rootfs in RageFile of Stepmania v5.1b2 and below allows attackers access to the entire file system.