PatchSiren

MJM Software CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH MJM Software CVE published 2025-08-20

CVE-2011-10023

A stack-based buffer overflow vulnerability exists in MJM QuickPlayer (also known as MJM Player) version 2010, triggered when a user opens a malicious .s3m music file. The flaw stems from improper bounds checking in the file parser, enabling memory corruption and potential arbitrary code execution. Exploitation requires user interaction to open a crafted file. The vulnerability was disclosed in 2011 with [truncated]