CVE-2024-44866

Medium severity, CVSS 6.8. EPSS: 0.3% chance of exploitation in the next 30 days.

A buffer overflow in the GuitarPro1::read function of MuseScore Studio v4.3.2 allows attackers to to execute arbitrary code or cause a Denial of Service (DoS) via opening a crafted GuitarPro file.

Published 2025-03-17. Last modified 2026-06-17.