CVE-2016-9961
9.8
CRITICAL · CVSS 3.0 · EPSS 4.4% (pctl 91)
In your normal cycle
Critical by CVSS (9.8), but no sign of active exploitation.
Description
game-music-emu before 0.6.1 mishandles unspecified integer values.
Scoring
| CVSS | 9.8 (CRITICAL, v3.0) |
|---|---|
| Vector | CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 4.36% — more likely to be exploited than 91% of all CVEs |
| Weakness | CWE-189 |
| On CISA KEV | no |
| Public exploit | none known |
| Published | 2017-06-06 |
| Last modified | 2026-06-17 |
Affected (7)
| Vendor | Product |
|---|---|
| fedoraproject | fedora |
| game-music-emu project | game-music-emu |
| novell | suse linux enterprise desktop |
| novell | suse linux enterprise server |
| novell | suse linux enterprise software development kit |
| opensuse | leap |
| opensuse project | leap |
References
- http://lists.opensuse.org/opensuse-security-announce/2016-12/msg00090.html
- http://lists.opensuse.org/opensuse-security-announce/2017-01/msg00005.html
- http://www.openwall.com/lists/oss-security/2016/12/15/11
- http://www.securityfocus.com/bid/95305
- https://bitbucket.org/mpyne/game-music-emu/wiki/Home
- https://bugzilla.redhat.com/show_bug.cgi?id=1405423
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6LKMKVYS7AVB2EXC463FUYN6C6FABHME/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/F7Z2OVERYM6NW3FGVGTJUNSL5ZNFSH2S/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GGHAQI5Q2XDSPGRRKPJJM3A73VWAFSFL/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/QHFKIFSFIDXOKFUKAH2MBNXDTY6DYBF6/
- https://scarybeastsecurity.blogspot.cz/2016/12/redux-compromising-linux-using-snes.html
- https://security.gentoo.org/glsa/201707-02
- http://lists.opensuse.org/opensuse-security-announce/2016-12/msg00090.html
- http://lists.opensuse.org/opensuse-security-announce/2017-01/msg00005.html
- http://www.openwall.com/lists/oss-security/2016/12/15/11
- http://www.securityfocus.com/bid/95305
- https://bitbucket.org/mpyne/game-music-emu/wiki/Home
- https://bugzilla.redhat.com/show_bug.cgi?id=1405423
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6LKMKVYS7AVB2EXC463FUYN6C6FABHME/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/F7Z2OVERYM6NW3FGVGTJUNSL5ZNFSH2S/
→ the Explorer · watch your stack · NVD