Back to search
CVE-2009-20004
Published: Aug 21, 2025
Modified: May 15, 2026
PUBLISHED
Description
gAlan 0.2.1, a modular audio processing environment for Windows, is vulnerable to a stack-based buffer overflow when parsing .galan files. The application fails to properly validate the length of input data, allowing a specially crafted file to overwrite the stack and execute arbitrary code. Exploitation requires local interaction, typically by convincing a user to open the malicious file.
| Vendor | Product | Versions |
|---|---|---|
gAlan | gAlan | affected 0 - <= 0.2.1 |
Weaknesses (CWE)
References
https://www.vulncheck.com/advisories/galan-buffer-overflow
third-party-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now