Candidate: CVE-2019-14692 PublicDate: 2019-08-06 13:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-14692 https://github.com/adplug/adplug/issues/87 Description: AdPlug 2.3.1 has a heap-based buffer overflow in CmkjPlayer::load() in mkj.cpp. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H [8.8 HIGH] nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H [8.8 HIGH] Patches_adplug: upstream_adplug: needed precise/esm_adplug: DNE trusty_adplug: ignored (out of standard support) trusty/esm_adplug: DNE xenial_adplug: ignored (end of standard support, was needed) bionic_adplug: needed disco_adplug: ignored (reached end-of-life) eoan_adplug: ignored (reached end-of-life) focal_adplug: needed groovy_adplug: not-affected (2.3.3+dfsg-2) hirsute_adplug: not-affected (2.3.3+dfsg-2) impish_adplug: not-affected (2.3.3+dfsg-2) jammy_adplug: not-affected (2.3.3+dfsg-2) devel_adplug: not-affected (2.3.3+dfsg-2)