### [CVE-2018-1000223](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-1000223) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description soundtouch version up to and including 2.0.0 contains a Buffer Overflow vulnerability in SoundStretch/WavFile.cpp:WavInFile::readHeaderBlock() that can result in arbitrary code execution. This attack appear to be exploitable via victim must open maliocius file in soundstretch utility. ### POC #### Reference - https://gitlab.com/soundtouch/soundtouch/issues/6 - https://gitlab.com/soundtouch/soundtouch/issues/6 #### Github No PoCs found on GitHub currently.