LIVE · cybersecurity feed
Live wire
cve recordhigh

CVE-2019-25560

lyricvideocreator · lyric video creator

Published
CVSS7.5
Severityhigh
WeaknessCWE-226
ExploitedNot in CISA KEV

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Description

Lyric Video Creator 2.1 contains a denial of service vulnerability that allows attackers to crash the application by processing malformed MP3 files. Attackers can create a crafted MP3 file with an oversized buffer and trigger the crash by opening the file through the Browse song functionality.

References

← Back to the CVE Tracker

Our coverage of CVE-2019-25560

No stories yet. This page updates automatically when we publish reporting that references CVE-2019-25560.