Debian Milkytracker vulnerabilities
5 known vulnerabilities affecting debian/milkytracker.
Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM2LOW1
Vulnerabilities
Page 1 of 1
CVE-2022-34927LOWCVSS 7.8fixed in milkytracker 1.04.00+dfsg-1 (forky)2022
CVE-2022-34927 [HIGH] CVE-2022-34927: milkytracker - MilkyTracker v1.03.00 was discovered to contain a stack overflow via the compone...
MilkyTracker v1.03.00 was discovered to contain a stack overflow via the component LoaderXM::load. This vulnerability is triggered when the program is supplied a crafted XM module file.
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 1.04.00+dfsg-1)
sid: resolved (fixed in 1.04.00+dfsg-1)
trixie: resolved (fixed in 1.04.00+dfsg-1)
debian
CVE-2020-15569MEDIUMCVSS 5.5fixed in milkytracker 1.02.00+dfsg-2.1 (bookworm)2020
CVE-2020-15569 [MEDIUM] CVE-2020-15569: milkytracker - PlayerGeneric.cpp in MilkyTracker through 1.02.00 has a use-after-free in the Pl...
PlayerGeneric.cpp in MilkyTracker through 1.02.00 has a use-after-free in the PlayerGeneric destructor.
Scope: local
bookworm: resolved (fixed in 1.02.00+dfsg-2.1)
bullseye: resolved (fixed in 1.02.00+dfsg-2.1)
forky: resolved (fixed in 1.02.00+dfsg-2.1)
sid: resolved (fixed in 1.02.00+dfsg-2.1)
trixie: resolved (fixed in 1.02.00+dfsg-2.1)
debian
CVE-2019-14496HIGHCVSS 7.8fixed in milkytracker 1.02.00+dfsg-2 (bookworm)2019
CVE-2019-14496 [HIGH] CVE-2019-14496: milkytracker - LoaderXM::load in LoaderXM.cpp in milkyplay in MilkyTracker 1.02.00 has a stack-...
LoaderXM::load in LoaderXM.cpp in milkyplay in MilkyTracker 1.02.00 has a stack-based buffer overflow.
Scope: local
bookworm: resolved (fixed in 1.02.00+dfsg-2)
bullseye: resolved (fixed in 1.02.00+dfsg-2)
forky: resolved (fixed in 1.02.00+dfsg-2)
sid: resolved (fixed in 1.02.00+dfsg-2)
trixie: resolved (fixed in 1.02.00+dfsg-2)
debian
CVE-2019-14497HIGHCVSS 7.8fixed in milkytracker 1.02.00+dfsg-2 (bookworm)2019
CVE-2019-14497 [HIGH] CVE-2019-14497: milkytracker - ModuleEditor::convertInstrument in tracker/ModuleEditor.cpp in MilkyTracker 1.02...
ModuleEditor::convertInstrument in tracker/ModuleEditor.cpp in MilkyTracker 1.02.00 has a heap-based buffer overflow.
Scope: local
bookworm: resolved (fixed in 1.02.00+dfsg-2)
bullseye: resolved (fixed in 1.02.00+dfsg-2)
forky: resolved (fixed in 1.02.00+dfsg-2)
sid: resolved (fixed in 1.02.00+dfsg-2)
trixie: resolved (fixed in 1.02.00+dfsg-2)
debian
CVE-2019-14464MEDIUMCVSS 5.5fixed in milkytracker 1.02.00+dfsg-2 (bookworm)2019
CVE-2019-14464 [MEDIUM] CVE-2019-14464: milkytracker - XMFile::read in XMFile.cpp in milkyplay in MilkyTracker 1.02.00 has a heap-based...
XMFile::read in XMFile.cpp in milkyplay in MilkyTracker 1.02.00 has a heap-based buffer overflow.
Scope: local
bookworm: resolved (fixed in 1.02.00+dfsg-2)
bullseye: resolved (fixed in 1.02.00+dfsg-2)
forky: resolved (fixed in 1.02.00+dfsg-2)
sid: resolved (fixed in 1.02.00+dfsg-2)
trixie: resolved (fixed in 1.02.00+dfsg-2)
debian