CVE-2018-17825: Adplug Project Adplug

Critical severity, CVSS 9.8. EPSS: 2.3% chance of exploitation in the next 30 days.

An issue was discovered in AdPlug 2.3.1. There are several double-free vulnerabilities in the CEmuopl class in emuopl.cpp because of a destructor's two OPLDestroy calls, each of which frees TL_TABLE, SIN_TABLE, AMS_TABLE, and VIB_TABLE.

Affected products

Published 2018-10-01. Last modified 2026-06-17.