PublicDateAtUSN: 2009-01-20 Candidate: CVE-2007-6720 PublicDate: 2009-01-20 16:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6720 https://ubuntu.com/security/notices/USN-995-1 Description: libmikmod 3.1.9 through 3.2.0, as used by MikMod, SDL-mixer, and possibly other products, relies on the channel count of the last loaded song, rather than the currently playing song, for certain playback calculations, which allows user-assisted attackers to cause a denial of service (application crash) by loading multiple songs (aka MOD files) with different numbers of channels. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_libmikmod: upstream_libmikmod: released (3.1.11-6.1) dapper_libmikmod: ignored (reached end-of-life) gutsy_libmikmod: needed (reached end-of-life) hardy_libmikmod: released (3.1.11-6ubuntu3.8.04.1) intrepid_libmikmod: needed (reached end-of-life) jaunty_libmikmod: released (3.1.11-6ubuntu3.9.04.1) karmic_libmikmod: released (3.1.11-6ubuntu4.1) lucid_libmikmod: not-affected (3.1.11-6.1) devel_libmikmod: not-affected (3.1.11-6.1)