CVE-2012-2107

Publication date

2014-02-04 18:00:00

Family

redhat

State

PUBLISHED

Description

Integer overflow in the main function in util/lpci_main.c in Csound before 5.17.2, when converting a file, allows user-assisted remote attackers to execute arbitrary code via a crafted file, which triggers a heap-based buffer overflow.