← Vulnerability feed

Vulnerability record · CVE-2011-2915 · published 7 June 2012

CVE-2011-2915: Konstanty bialkowski libmodplug vulnerability

KKonstanty Bialkowski · Libmodplug

Off-by-one error in the CSoundFile::ReadAMS2 function in src/load_ams.cpp in libmodplug before 0.8.8.4 allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via a crafted AMS file with a large number of instruments.

6.8 CVSS 2.0 Medium EPSS 4.2% · top 9.4% CWE-189 · CWE-189
6.8CVSS 2.0 base score
4.2%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
52References
16 Jun 2026Last modified by NVD

Description

Off-by-one error in the CSoundFile::ReadAMS2 function in src/load_ams.cpp in libmodplug before 0.8.8.4 allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via a crafted AMS file with a large number of instruments.

AV:N/AC:M/Au:N/C:P/I:P/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://jira.atheme.org/browse/AUDPLUG-394
http://lists.fedoraproject.org/pipermail/package-announce/2011-August/063786.html
http://lists.fedoraproject.org/pipermail/package-announce/2011-September/066044.html
http://lists.opensuse.org/opensuse-security-announce/2011-08/msg00019.html
http://modplug-xmms.git.sourceforge.net/git/gitweb.cgi?p=modplug-xmms/modplug-xmms%3Ba=commitdiff%3Bh=16d7a78efe14d345a6
http://rhn.redhat.com/errata/RHSA-2011-1264.html
http://secunia.com/advisories/45131 Vendor Advisory
http://secunia.com/advisories/45658 Vendor Advisory
http://secunia.com/advisories/45742 Vendor Advisory
http://secunia.com/advisories/45901 Vendor Advisory
http://secunia.com/advisories/46032 Vendor Advisory
http://secunia.com/advisories/46043 Vendor Advisory
http://secunia.com/advisories/46793 Vendor Advisory
http://secunia.com/advisories/48058 Vendor Advisory
http://secunia.com/advisories/48434 Vendor Advisory
http://secunia.com/advisories/48439 Vendor Advisory
http://sourceforge.net/projects/modplug-xmms/files/libmodplug/0.8.8.4/
http://ubuntu.com/usn/usn-1255-1
http://www.debian.org/security/2012/dsa-2415
http://www.gentoo.org/security/en/glsa/glsa-201203-14.xml
http://www.gentoo.org/security/en/glsa/glsa-201203-16.xml
http://www.openwall.com/lists/oss-security/2011/08/10/4
http://www.openwall.com/lists/oss-security/2011/08/12/4
http://www.osvdb.org/74210
http://www.securityfocus.com/bid/48979
https://exchange.xforce.ibmcloud.com/vulnerabilities/68987
http://jira.atheme.org/browse/AUDPLUG-394
http://lists.fedoraproject.org/pipermail/package-announce/2011-August/063786.html
http://lists.fedoraproject.org/pipermail/package-announce/2011-September/066044.html
http://lists.opensuse.org/opensuse-security-announce/2011-08/msg00019.html
http://modplug-xmms.git.sourceforge.net/git/gitweb.cgi?p=modplug-xmms/modplug-xmms%3Ba=commitdiff%3Bh=16d7a78efe14d345a6
http://rhn.redhat.com/errata/RHSA-2011-1264.html
http://secunia.com/advisories/45131 Vendor Advisory
http://secunia.com/advisories/45658 Vendor Advisory
http://secunia.com/advisories/45742 Vendor Advisory
http://secunia.com/advisories/45901 Vendor Advisory
http://secunia.com/advisories/46032 Vendor Advisory
http://secunia.com/advisories/46043 Vendor Advisory
http://secunia.com/advisories/46793 Vendor Advisory
http://secunia.com/advisories/48058 Vendor Advisory

Track CVE-2011-2915 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.5CVE-2009-1438Konstanty bialkowski libmodplug vulnerabilityInteger overflow in the CSoundFile::ReadMed function (src/load_med.cpp) in libmodplug before 0.8.6, as used in gstreamer-plugins, TTPlayer, and other…EPSS 4.7%6.8CVE-2013-4234Konstanty bialkowski libmodplug memory buffer overflow vulnerabilityMultiple heap-based buffer overflows in the (1) abc_MIDI_drum and (2) abc_MIDI_gchord functions in load_abc.cpp in libmodplug 0.8.8.4 and earlier all…EPSS 4.4%6.8CVE-2013-4233Konstanty bialkowski libmodplug vulnerabilityInteger overflow in the abc_set_parts function in load_abc.cpp in libmodplug 0.8.8.4 and earlier allows remote attackers to cause a denial of service…EPSS 4.1%6.8CVE-2011-2911Konstanty bialkowski libmodplug vulnerabilityInteger overflow in the CSoundFile::ReadWav function in src/load_wav.cpp in libmodplug before 0.8.8.4 allows remote attackers to cause a denial of se…EPSS 4.3%6.8CVE-2011-2912Konstanty bialkowski libmodplug memory buffer overflow vulnerabilityStack-based buffer overflow in the CSoundFile::ReadS3M function in src/load_s3m.cpp in libmodplug before 0.8.8.4 allows remote attackers to cause a d…EPSS 4.3%6.8CVE-2011-2913Konstanty bialkowski libmodplug vulnerabilityOff-by-one error in the CSoundFile::ReadAMS function in src/load_ams.cpp in libmodplug before 0.8.8.4 allows remote attackers to cause a denial of se…EPSS 4.6%6.8CVE-2011-2914Konstanty bialkowski libmodplug vulnerabilityOff-by-one error in the CSoundFile::ReadDSM function in src/load_dms.cpp in libmodplug before 0.8.8.4 allows remote attackers to cause a denial of se…EPSS 4.6%6.8CVE-2011-1761Konstanty bialkowski libmodplug memory buffer overflow vulnerabilityMultiple stack-based buffer overflows in the (1) abc_new_macro and (2) abc_new_umacro functions in src/load_abc.cpp in libmodplug before 0.8.8.3 allo…EPSS 11%

Source: NIST National Vulnerability Database (record CVE-2011-2915), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.