CVE-2018-25260

Severity CVSS v4.0:
HIGH
Type:
CWE-787 Out-of-bounds Write
Publication date:
22/04/2026
Last modified:
29/04/2026

Description

MAGIX Music Editor 3.1 contains a buffer overflow vulnerability in the FreeDB Proxy Options dialog that allows local attackers to execute arbitrary code by exploiting structured exception handling. Attackers can craft a malicious payload, paste it into the Server field via the CD menu's FreeDB Proxy Options, and trigger code execution when settings are accepted.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:magix:music_editor_deluxe:*:*:*:*:*:*:*:* 3.1 (including)