An issue was discovered in Schism Tracker through 20190722. There is a heap-based buffer overflow via a large number of song patterns in fmtmtmload_song in fmt/mtm.c, a different vulnerability than CVE-2019-14465.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2019-14524.json"
[
{
"source": "https://github.com/schismtracker/schismtracker/commit/2bec16c06dd8217e9a13c0a11a8cffef056ba654",
"id": "CVE-2019-14524-8f209608",
"signature_type": "Line",
"signature_version": "v1",
"target": {
"file": "fmt/mtm.c"
},
"deprecated": false,
"digest": {
"line_hashes": [
"224055788049900540709427692689651661201",
"275930272063615827784692127744287583208",
"160960154854901102293228634199250200061",
"123549873775705913765956774013891154771",
"13313165472099101128433330569817398371",
"55856736214367538685431831480351812470",
"229716936099274747841883636138080302287",
"161110344584187560828581970612955282499",
"208086167321760982844594865909047492195",
"68266502516922298588855656691560064102",
"247412820218332113063109928122426004610",
"42939641534974008856493574042964664992",
"8801546335998364913974673681558108434",
"219381611494742201977818552885141022050",
"186899322944989209956665385294356561546"
],
"threshold": 0.9
}
},
{
"source": "https://github.com/schismtracker/schismtracker/commit/2bec16c06dd8217e9a13c0a11a8cffef056ba654",
"id": "CVE-2019-14524-a3aa1a43",
"signature_type": "Function",
"signature_version": "v1",
"target": {
"file": "fmt/mtm.c",
"function": "fmt_mtm_load_song"
},
"deprecated": false,
"digest": {
"function_hash": "265080868349810600778120886468204675936",
"length": 4419.0
}
}
]