CVE-2019-14524: Opensuse Backports

High severity, CVSS 7.8. EPSS: 1.3% chance of exploitation in the next 30 days.

An issue was discovered in Schism Tracker through 20190722. There is a heap-based buffer overflow via a large number of song patterns in fmt_mtm_load_song in fmt/mtm.c, a different vulnerability than CVE-2019-14465.

Affected products

  • Opensuse Backports: version sle-15 only
  • Opensuse Leap: version 15.0 only; version 15.1 only
  • Schismtracker Schism Tracker: up to and including 20190722

Published 2019-08-02. Last modified 2026-06-17.