← Vulnerability feed

Vulnerability record · CVE-2012-0270 · published 17 February 2014

CVE-2012-0270: Csound stack buffer overflows in hetro and PVOC file parsers

Csounds · Csound

Csound before 5.16.6 contains multiple stack-based buffer overflows in the getnum function used by the hetro (util/heti_main.c) and PVOC (util/pv_import.c) file importers. A crafted hetro or PVOC file can overflow a stack buffer, which matters because Csound is commonly used to process untrusted audio and analysis files. The record does not state whether the overflow is trivially reachable or how much control the attacker has over the overwritten data.

7.5 CVSS 2.0 High EPSS 55% · top 1.0% CWE-119 · Memory buffer overflow
7.5CVSS 2.0 base score
55%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
10References
16 Jun 2026Last modified by NVD

Description

Multiple stack-based buffer overflows in Csound before 5.16.6 allow remote attackers to execute arbitrary code via a crafted (1) hetro file to the getnum function in util/heti_main.c or (2) PVOC file to the getnum function in util/pv_import.c.

AV:N/AC:L/Au:N/C:P/I:P/A:P

Automated analysis

Generated by VULONE's analysis model from the NVD record, CISA KEV and EPSS data on 20 September 2026. Confidence: medium.

high priorityRemote, unauthenticated code execution with a high EPSS score, though no KEV listing or confirmed in-the-wild exploitation is recorded.

What it is

Csound before 5.16.6 contains multiple stack-based buffer overflows in the getnum function used by the hetro (util/heti_main.c) and PVOC (util/pv_import.c) file importers. A crafted hetro or PVOC file can overflow a stack buffer, which matters because Csound is commonly used to process untrusted audio and analysis files. The record does not state whether the overflow is trivially reachable or how much control the attacker has over the overwritten data.

Impact

An attacker who gets a crafted hetro or PVOC file processed can potentially execute arbitrary code in the context of the Csound process. The record does not specify the privilege level or whether code execution is reliably achievable.

Attack surface

The flaw is reached over the network (AV:N) with no authentication (Au:N) and no user interaction (AC:L) per the CVSS 2.0 vector, by supplying a malicious hetro or PVOC file to Csound. In practice this means any workflow that ingests such files from untrusted sources is exposed.

Exploitation

CVE-2012-0270 is not listed in CISA KEV and no ransomware use is documented, but EPSS is 0.54671 (98.9th percentile), indicating a high modeled likelihood of exploitation activity. References are vendor advisories and release notes only; no public exploit or in-the-wild report is cited in the record.

What to do

  • Upgrade Csound to 5.16.6 or later, which the vendor notes address these overflows.
  • If upgrade is not possible, avoid processing hetro or PVOC files from untrusted sources and block them at ingestion points.
  • Apply the openSUSE security updates referenced in the advisories if running the distribution package.
  • Run Csound with least privilege and sandbox file parsing so a successful overflow does not yield broad host access.
  • Add file type and size validation for hetro and PVOC inputs before they reach the parser.

Detection

  • Monitor for Csound processes crashing or terminating abnormally while parsing hetro or PVOC files.
  • Alert on Csound spawning unexpected child processes or making outbound network connections after file import.
  • Track hetro and PVOC files arriving from external or untrusted sources and log their origin.
  • Use endpoint detection to flag stack corruption or exploit-like behavior in Csound process memory.

This assessment is produced automatically and is not human-reviewed. Verify against the vendor advisory before acting on it.

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2012-0270 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.3CVE-2012-2106Csounds csound vulnerabilityInteger overflow in the pv_import function in util/pv_import.c in Csound 5.16.6, when converting a file, allows remote attackers to execute arbitrary…EPSS 5.7%9.3CVE-2012-2107Csounds csound vulnerabilityInteger overflow in the main function in util/lpci_main.c in Csound before 5.17.2, when converting a file, allows user-assisted remote attackers to e…EPSS 6.7%9.3CVE-2012-2108Csounds csound memory buffer overflow vulnerabilityStack-based buffer overflow in the main function in util/lpci_main.c in Csound before 5.17.2, when converting a file, allows user-assisted remote att…EPSS 6.6%9.5CVE-2026-88772Citrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer VulnerabilityVulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 F…KEV8.8CVE-2026-8452Citrix NetScaler ADC and Gateway memory buffer overflow causes DoSCVE-2026-8452 is a memory buffer overflow (CWE-119) in Citrix NetScaler ADC and NetScaler Gateway that leads to unpredictable or erroneous behavior a…KEVEPSS 1.0%analysed8.8CVE-2009-3459Adobe Reader and Acrobat heap buffer overflow via crafted PDFAdobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 contain a heap-based buffer overflow (CWE-122) triggered by a crafted…KEVEPSS 87%analysed9.8CVE-2008-4250Microsoft Windows Server service RPC path canonicalization buffer overflowThe Server service in multiple Windows versions fails to properly handle path canonicalization, allowing a crafted RPC request to overflow a buffer a…KEVEPSS 99%analysed8.8CVE-2025-31277Apple WebKit memory corruption via malicious web contentApple WebKit fails to handle memory correctly when processing crafted web content, leading to memory corruption across Safari, iOS, iPadOS, macOS, tv…KEVEPSS 1.6%analysed

Source: NIST National Vulnerability Database (record CVE-2012-0270), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.