CVE-2013-1980: Extended Module Player Project Extended Module Player

Medium severity, CVSS 6.8. EPSS: 3.7% chance of exploitation in the next 30 days.

Buffer overflow in the get_dsmp function in loaders/masi_load.c in libxmp before 4.1.0 allows remote attackers to execute arbitrary code via a crafted MASI file.

Affected products

  • Extended Module Player Project Extended Module Player: up to and including 4.0.4; version 4.0.0 only; version 4.0.1 only; version 4.0.2 only; version 4.0.3 only

Published 2014-02-11. Last modified 2026-06-16.