CVE-2017-12911 (NVD)

2017-09-07

The "apetag.c" file in MP3Gain 1.5.2.r2 has a vulnerability which results in a stack memory corruption when opening a crafted MP3 file.

Products Mp3gain
Type Improper Restriction of Operations within the Bounds of a Memory Buffer (CWE-119)
First patch - None (likely due to unavailable code)
Links https://drive.google.com/open?id=0B9DojFnTUSNGeS1hZlJkeGVkYlU