MilkyTracker v1.03.00 was discovered to contain a stack overflow via the component LoaderXM::load. This vulnerability is triggered when the program is supplied a crafted XM module file.
{
"cna_assigner": "mitre",
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/34xxx/CVE-2022-34927.json"
}{
"source": [
"CPE_STRING",
"REFERENCES"
],
"cpe": "cpe:2.3:a:milkytracker_project:milkytracker:1.03.00:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "1.03.00"
},
{
"last_affected": "1.03.00"
}
]
}
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-34927.json"
[
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"92762678729644534731041799942737680000",
"263997541143629577749552266977049635344",
"224676694526586997915366558330786479696",
"113720897472328604541739210501823761945"
]
},
"target": {
"file": "src/milkyplay/LoaderXM.cpp"
},
"source": "https://github.com/milkytracker/milkytracker/commit/3a5474f9102cbdc10fbd9e7b1b2c8d3f3f45d91b",
"signature_version": "v1",
"id": "CVE-2022-34927-2af757c9",
"deprecated": false
},
{
"signature_type": "Function",
"digest": {
"function_hash": "154008910926743438524962085660973975776",
"length": 16512.0
},
"target": {
"function": "LoaderXM::load",
"file": "src/milkyplay/LoaderXM.cpp"
},
"source": "https://github.com/milkytracker/milkytracker/commit/3a5474f9102cbdc10fbd9e7b1b2c8d3f3f45d91b",
"signature_version": "v1",
"id": "CVE-2022-34927-cb042e6a",
"deprecated": false
}
]
"2026-08-12T13:01:06Z"