An issue was discovered in AdPlug 2.3.1. There are several double-free vulnerabilities in the CEmuopl class in emuopl.cpp because of a destructor's two OPLDestroy calls, each of which frees TL_TABLE, SIN_TABLE, AMS_TABLE, and VIB_TABLE.
References
Link | Resource |
---|---|
https://github.com/adplug/adplug/issues/67 | Exploit Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/U3PW6PLDTPSQQRHKTU2FB72SUB4Q66NE/ | Mailing List Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/Q32A64R2APAC5PXIMSYIEFDQX5AD4GAS/ | Mailing List Third Party Advisory |
Information
Published : 2018-10-01 01:29
Updated : 2022-10-06 19:08
NVD link : CVE-2018-17825
Mitre link : CVE-2018-17825
JSON object : View
CWE
CWE-415
Double Free
Products Affected
fedoraproject
- fedora
adplug_project
- adplug