The _WM_ParseNewMidi function in f_midi.c in WildMIDI 0.4.2 can cause a denial of service (invalid memory read and application crash) via a crafted mid file.Referenceshttps://www.exploit-db.com/exploits/42433/http://seclists.org/fulldisclosure/2017/Aug/12