Jetaudio is an audio playback and editing application with a compact product footprint centered on the Jetaudio media player and Lyric Maker utility, presenting a modest attack surface within consumer media software. The observed vulnerability signal reflects memory-safety concerns, with recurring issues in buffer-boundary enforcement and out-of-bounds write conditions typical of native audio processing code. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Jetaudio over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2013-2691HIGH Stack-based buffer overflow in the JetMPG.ax module in jetAudio 8.0.17 allows remote attackers to execute arbitrary code via a crafted MPEG2-TS video file, related to the MPEG2 tra | Feb 5, 2014 | 9.3 | 24 | NO | NO |
CVE-2019-25561MEDIUM Lyric Maker 2.0.1.0 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an excessively long string in the Title field. Attack | Mar 21, 2026 | 6.2 | 21 | NO | NO |
CVE-2014-3443MEDIUM JetMPAd.ax in JetAudio 8.1.1 and earlier allows remote attackers to cause a denial of service (crash) via a crafted .ogg file. | May 14, 2014 | 4.3 | 21 | NO | YES |
CVE-2019-25562MEDIUM jetAudio 8.1.7 contains a buffer overflow vulnerability in the video converter component that allows local attackers to crash the application by supplying an oversized string in th | Mar 21, 2026 | 5.5 | 20 | NO | NO |
CVE-2010-5202MEDIUM Untrusted search path vulnerability in JetAudio 8.0.7.1000 Basic allows local users to gain privileges via a Trojan horse WNASPI32.DLL file in the current working directory, as dem | Sep 6, 2012 | 6.9 | 20 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Jetaudio.
Media articles that mention a CVE ID that affects a product developed by Jetaudio — matched by CVE ID, not by vendor name.