A buffer over-read was discovered in ReadMP3APETag in apetag.c in MP3Gain 1.6.2. The vulnerability causes an application crash, which leads to remote denial of service.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-18359.json"
[ { "events": [ { "introduced": "0" }, { "last_affected": "1.6.2" } ] } ]