fmtmtmload_song in fmt/mtm.c in Schism Tracker 20190722 has a heap-based buffer overflow.
[
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"224055788049900540709427692689651661201",
"275930272063615827784692127744287583208",
"160960154854901102293228634199250200061",
"123549873775705913765956774013891154771",
"13313165472099101128433330569817398371",
"55856736214367538685431831480351812470",
"229716936099274747841883636138080302287",
"161110344584187560828581970612955282499",
"208086167321760982844594865909047492195",
"68266502516922298588855656691560064102",
"247412820218332113063109928122426004610",
"42939641534974008856493574042964664992",
"8801546335998364913974673681558108434",
"219381611494742201977818552885141022050",
"186899322944989209956665385294356561546"
]
},
"source": "https://github.com/schismtracker/schismtracker/commit/2bec16c06dd8217e9a13c0a11a8cffef056ba654",
"deprecated": false,
"target": {
"file": "fmt/mtm.c"
},
"id": "CVE-2019-14465-8f209608",
"signature_type": "Line",
"signature_version": "v1"
},
{
"digest": {
"function_hash": "265080868349810600778120886468204675936",
"length": 4419.0
},
"source": "https://github.com/schismtracker/schismtracker/commit/2bec16c06dd8217e9a13c0a11a8cffef056ba654",
"deprecated": false,
"target": {
"file": "fmt/mtm.c",
"function": "fmt_mtm_load_song"
},
"id": "CVE-2019-14465-a3aa1a43",
"signature_type": "Function",
"signature_version": "v1"
}
]