CVE-2017-12911: MP3GAIN

Medium severity, CVSS 5.5. EPSS: 0.9% chance of exploitation in the next 30 days.

The "apetag.c" file in MP3Gain 1.5.2.r2 has a vulnerability which results in a stack memory corruption when opening a crafted MP3 file.

Affected products

  • MP3GAIN MP3GAIN: version 1.5.2 only

Published 2017-09-07. Last modified 2026-06-17.