CVE-2019-25560
Severity CVSS v4.0:
HIGH
Type:
CWE-226
Sensitive Information in Resource Not Removed Before Reuse
Publication date:
21/03/2026
Last modified:
23/03/2026
Description
Lyric Video Creator 2.1 contains a denial of service vulnerability that allows attackers to crash the application by processing malformed MP3 files. Attackers can create a crafted MP3 file with an oversized buffer and trigger the crash by opening the file through the Browse song functionality.
Impact
Base Score 4.0
8.70
Severity 4.0
HIGH
Base Score 3.x
7.50
Severity 3.x
HIGH



