Surina's vulnerability footprint centers on the SoundTouch audio platform, a modestly represented but widely embedded product line within consumer audio systems. The recurring weakness classes—including reachable assertions, double frees, buffer-boundary violations, and infinite loops—reflect memory-safety and control-flow issues characteristic of native audio processing code, and public exploit code frequently becomes available for vulnerabilities in this product category. Defenders should track this vendor's updates for internet-connected audio devices and treat accessible instances as patching priorities; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Surina over time
Signals from CVEs in this vendor scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-9260MEDIUM The TDStretchSSE::calcCrossCorr function in source/SoundTouch/sse_optimized.cpp in SoundTouch 1.9.2 allows remote attackers to cause a denial of service (heap-based buffer over-rea | Jul 27, 2017 | 5.5 | 31 | NO | YES |
CVE-2017-9259MEDIUM The TDStretch::acceptNewOverlapLength function in source/SoundTouch/TDStretch.cpp in SoundTouch 1.9.2 allows remote attackers to cause a denial of service (memory allocation error | Jul 27, 2017 | 5.5 | 31 | NO | YES |
CVE-2017-9258MEDIUM The TDStretch::processSamples function in source/SoundTouch/TDStretch.cpp in SoundTouch 1.9.2 allows remote attackers to cause a denial of service (infinite loop and CPU consumptio | Jul 27, 2017 | 5.5 | 29 | NO | YES |
CVE-2018-17098HIGH The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (heap corruption from size inconsistency) or possibly ha | Sep 16, 2018 | 8.8 | 28 | NO | NO |
CVE-2018-17097HIGH The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (double free) or possibly have unspecified other impact, | Sep 16, 2018 | 8.8 | 28 | NO | NO |
CVE-2018-1000223HIGH soundtouch version up to and including 2.0.0 contains a Buffer Overflow vulnerability in SoundStretch/WavFile.cpp:WavInFile::readHeaderBlock() that can result in arbitrary code exe | Aug 20, 2018 | 8.8 | 28 | NO | NO |
CVE-2018-14045HIGH The FIRFilter::evaluateFilterMulti function in FIRFilter.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (assertion fa | Jul 13, 2018 | 7.5 | 23 | NO | NO |
CVE-2018-14044HIGH The RateTransposer::setChannels function in RateTransposer.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (assertion | Jul 13, 2018 | 7.5 | 23 | NO | NO |
CVE-2018-17096MEDIUM The BPMDetect class in BPMDetect.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (assertion failure and application ex | Sep 16, 2018 | 6.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (9 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Surina.
Media articles that mention a CVE ID that affects a product developed by Surina — matched by CVE ID, not by vendor name.