Vulnerability Details CVE-2017-11549
The play_midi function in playmidi.c in TiMidity++ 2.14.0 allows remote attackers to cause a denial of service (large loop and CPU consumption) via a crafted mid file. NOTE: CPU consumption might be relevant when using the --background option.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 45.7%
CVSS Severity
CVSS v3 Score 5.5
CVSS v2 Score 7.1
Products affected by CVE-2017-11549
-
cpe:2.3:a:timidity++_project:timidity++:2.14.0