CVE-2018-1000223

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
20/08/2018
Last modified:
15/10/2018

Description

soundtouch version up to and including 2.0.0 contains a Buffer Overflow vulnerability in SoundStretch/WavFile.cpp:WavInFile::readHeaderBlock() that can result in arbitrary code execution. This attack appear to be exploitable via victim must open maliocius file in soundstretch utility.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:surina:soundtouch:*:*:*:*:*:*:*:* 2.0.0 (including)


References to Advisories, Solutions, and Tools