Vulnerability Database
Blog
FAQ
Docs
UBUNTU-CVE-2018-20860
See a problem?
Please try reporting it
to the source
first.
Source
https://ubuntu.com/security/CVE-2018-20860
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2018/UBUNTU-CVE-2018-20860.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2018-20860
Related
CVE-2018-20860
Published
2019-07-30T19:15:00Z
Modified
2025-01-13T10:21:50Z
Severity
6.5 (Medium)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CVSS Calculator
6.5 (Medium)
CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CVSS Calculator
Summary
[none]
Details
libopenmpt before 0.3.13 allows a crash with malformed MED files.
References
https://ubuntu.com/security/CVE-2018-20860
https://lib.openmpt.org/libopenmpt/2018/10/21/security-updates-0.3.13-0.2.10933-beta36-0.2.7561-beta20.5-p11-0.2.7386-beta20.3-p14/
https://source.openmpt.org/browse/openmpt/trunk/?op=revision&rev=10903
https://www.cve.org/CVERecord?id=CVE-2018-20860
Affected packages
Ubuntu:Pro:18.04:LTS
/
libopenmpt
Package
Name
libopenmpt
Purl
pkg:deb/ubuntu/libopenmpt@0.3.6-1ubuntu0.1~esm1?arch=source&distro=esm-apps/bionic
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Affected versions
0.*
0.2.8760~beta27-1
0.3.1-1
0.3.2-1
0.3.3-1
0.3.4-1
0.3.6-1
0.3.6-1ubuntu0.1~esm1
Ecosystem specific
{ "ubuntu_priority": "low" }
UBUNTU-CVE-2018-20860 - OSV