AdPlug 2.3.1 has a heap-based buffer overflow in CxadbmfPlayer::_bmfconvert_stream() in bmf.cpp.
{
"binaries": [
{
"binary_version": "2.2.1+dfsg3-1~build0.16.04.1",
"binary_name": "adplug-utils"
},
{
"binary_version": "2.2.1+dfsg3-1~build0.16.04.1",
"binary_name": "libadplug-2.2.1-0v5"
},
{
"binary_version": "2.2.1+dfsg3-1~build0.16.04.1",
"binary_name": "libadplug-dev"
}
]
}
{
"binaries": [
{
"binary_version": "2.2.1+dfsg3-1~build0.18.04.1",
"binary_name": "adplug-utils"
},
{
"binary_version": "2.2.1+dfsg3-1~build0.18.04.1",
"binary_name": "libadplug-2.2.1-0v5"
},
{
"binary_version": "2.2.1+dfsg3-1~build0.18.04.1",
"binary_name": "libadplug-dev"
}
]
}