CVE-2024-44866
CVSS 3.1 Score 6.8 of 10 (medium)
Details
Published Mar 17, 2025
Updated: Mar 19, 2025
CWE ID 120
Summary
CVE-2024-44866 is a newly identified vulnerability in MuseScore Studio version 4.3.2. This issue involves a buffer overflow in the GuitarPro1::read function, which can be exploited by attackers. By opening a specially crafted GuitarPro file, they can execute arbitrary code or cause a Denial of Service (DoS) attack. This vulnerability poses a significant risk to users and requires immediate attention to apply patches or updates to mitigate the threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.