CNNVD-202508-2570 Information

CNNVD ID

CNNVD-202508-2570

CVE-2010-20111

  • CNNVD Published: 2025-08-21

Description (Chinese)

Digital Music Pad是Digital Music Pad公司的一款音乐创作与演奏软件。 Digital Music Pad v8.2.3.3.4版本存在安全漏洞,该漏洞源于解析.pls文件时未验证File1字段长度,可能导致栈缓冲区溢出和执行任意代码。

Description (English)

Digital Music Pad is a music creation and performance software for Digital Music Pad. There is a security loophole in version digital Music Pad v.8.2.3.3.4, which stems from the failure to verify the File1 field length when deconstructing.pls documents, which could result in spilling out of the buffer zone and implementing any code.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Digital Music Pad

Published

2025-08-21

Last Modified

2026-02-24

References

https://www.vulncheck.com/advisories/digital-music-pad-stack-buffer-overflow https://www.topshareware.com/Digital-Music-Pad-download-79446.htm https://www.exploit-db.com/exploits/15134 http://secunia.com:80/advisories/41519 https://web.archive.org/web/20100923154433/ https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/exploits/windows/fileformat/digital_music_pad_pls.rb https://nvd.nist.gov/vuln/detail/CVE-2010-20111

Share on: