Moinejf maintains abcm2ps, a specialized music notation conversion tool with a narrow but focused user base in musical publishing and score preparation workflows. Vulnerabilities affecting this vendor skew strongly toward critical-severity outcomes and concentrate in memory-safety weakness classes—out-of-bounds writes, buffer overflows, and improper bounds checking—that are characteristic of a C-based parsing tool handling untrusted input formats. Defenders should treat updates to this tool as a patching priority in environments where it processes user-supplied ABC notation files; live severity and current exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Moinejf over time
Signals from CVEs in this vendor scope (7 CVEs).
7 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2004-1258HIGH Buffer overflow in the put_words function in subs.c for abcm2ps 3.7.20 allows remote attackers to execute arbitrary code via crafted ABC files. | Jan 10, 2005 | 10.0 | 32 | NO | NO |
CVE-2018-10771CRITICAL Stack-based buffer overflow in the get_key function in parse.c in abcm2ps through 8.13.20 allows remote attackers to cause a denial of service (application crash) or possibly have | May 7, 2018 | 9.8 | 31 | NO | NO |
CVE-2010-4744HIGH Multiple unspecified vulnerabilities in abcm2ps before 5.9.13 have unknown impact and attack vectors, a different issue than CVE-2010-3441. | Feb 18, 2011 | 10.0 | 30 | NO | NO |
CVE-2018-10753CRITICAL Stack-based buffer overflow in the delayed_output function in music.c in abcm2ps through 8.13.20 allows remote attackers to cause a denial of service (application crash) or possibl | May 5, 2018 | 9.8 | 26 | NO | NO |
CVE-2010-4743MEDIUM Heap-based buffer overflow in the getarena function in abc2ps.c in abcm2ps before 5.9.13 might allow remote attackers to execute arbitrary code via a crafted ABC file, a different | Feb 18, 2011 | 6.8 | 22 | NO | NO |
CVE-2010-3441HIGH Multiple buffer overflows in abcm2ps before 5.9.12 might allow remote attackers to execute arbitrary code via (1) a crafted input file, related to the PUT0 and PUT1 output macros; | Feb 18, 2011 | 7.5 | 21 | NO | NO |
CVE-2019-1010069MEDIUM moinejf abcm2ps 8.13.20 is affected by: Incorrect Access Control. The impact is: Allows attackers to cause a denial of service attack via a crafted file. The component is: front.c, | Jul 18, 2019 | 5.5 | 20 | NO | NO |
Signals from CVEs in this vendor scope (7 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Moinejf.
Media articles that mention a CVE ID that affects a product developed by Moinejf — matched by CVE ID, not by vendor name.