CVE-2018-1000223: Surina Soundtouch

High severity, CVSS 8.8. EPSS: 2.4% chance of exploitation in the next 30 days.

soundtouch version up to and including 2.0.0 contains a Buffer Overflow vulnerability in SoundStretch/WavFile.cpp:WavInFile::readHeaderBlock() that can result in arbitrary code execution. This attack appear to be exploitable via victim must open maliocius file in soundstretch utility.

Affected products

  • Surina Soundtouch: up to and including 2.0.0

Published 2018-08-20. Last modified 2026-06-17.