Soxproject Sox
By the Year
In 2024 there have been 0 vulnerabilities in Soxproject Sox . Last year Sox had 3 security vulnerabilities published. Right now, Sox is on track to have less security vulnerabilities in 2024 than it did last year.
Year | Vulnerabilities | Average Score |
---|---|---|
2024 | 0 | 0.00 |
2023 | 3 | 6.27 |
2022 | 7 | 6.01 |
2021 | 0 | 0.00 |
2020 | 0 | 0.00 |
2019 | 0 | 0.00 |
2018 | 0 | 0.00 |
It may take a day or so for new Sox vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Soxproject Sox Security Vulnerabilities
A heap buffer overflow vulnerability was found in sox, in the startread function at sox/src/hcom.c:160:41
CVE-2023-34318
7.8 - High
- July 10, 2023
A heap buffer overflow vulnerability was found in sox, in the startread function at sox/src/hcom.c:160:41. This flaw can lead to a denial of service, code execution, or information disclosure.
Memory Corruption
A floating point exception vulnerability was found in sox, in the read_samples function at sox/src/voc.c:334:18
CVE-2023-32627
5.5 - Medium
- July 10, 2023
A floating point exception vulnerability was found in sox, in the read_samples function at sox/src/voc.c:334:18. This flaw can lead to a denial of service.
Incorrect Comparison
A floating point exception vulnerability was found in sox, in the lsx_aiffstartwrite function at sox/src/aiff.c:622:58
CVE-2023-26590
5.5 - Medium
- July 10, 2023
A floating point exception vulnerability was found in sox, in the lsx_aiffstartwrite function at sox/src/aiff.c:622:58. This flaw can lead to a denial of service.
Incorrect Comparison
A floating point exception (divide-by-zero) issue was discovered in SoX in functon startread() of wav.c file
CVE-2021-33844
5.5 - Medium
- August 25, 2022
A floating point exception (divide-by-zero) issue was discovered in SoX in functon startread() of wav.c file. An attacker with a crafted wav file, could cause an application to crash.
Divide By Zero
A floating point exception (divide-by-zero) issue was discovered in SoX in functon read_samples() of voc.c file
CVE-2021-23210
5.5 - Medium
- August 25, 2022
A floating point exception (divide-by-zero) issue was discovered in SoX in functon read_samples() of voc.c file. An attacker with a crafted file, could cause an application to crash.
Divide By Zero
A vulnerability was found in SoX, where a heap-buffer-overflow occurs in function startread() in hcom.c file
CVE-2021-23172
5.5 - Medium
- August 25, 2022
A vulnerability was found in SoX, where a heap-buffer-overflow occurs in function startread() in hcom.c file. The vulnerability is exploitable with a crafted hcomn file, that could cause an application to crash.
Classic Buffer Overflow
A vulnerability was found in SoX, where a heap-buffer-overflow occurs in function lsx_read_w_buf() in formats_i.c file
CVE-2021-23159
5.5 - Medium
- August 25, 2022
A vulnerability was found in SoX, where a heap-buffer-overflow occurs in function lsx_read_w_buf() in formats_i.c file. The vulnerability is exploitable with a crafted file, that could cause an application to crash.
Classic Buffer Overflow
In SoX 14.4.2
CVE-2022-31651
5.5 - Medium
- May 25, 2022
In SoX 14.4.2, there is an assertion failure in rate_init in rate.c in libsox.a.
assertion failure
In SoX 14.4.2
CVE-2022-31650
5.5 - Medium
- May 25, 2022
In SoX 14.4.2, there is a floating-point exception in lsx_aiffstartwrite in aiff.c in libsox.a.
Incorrect Comparison
A flaw was found in sox 14.4.1
CVE-2021-3643
9.1 - Critical
- May 02, 2022
A flaw was found in sox 14.4.1. The lsx_adpcm_init function within libsox leads to a global-buffer-overflow. This flaw allows an attacker to input a malicious file, leading to the disclosure of sensitive information.
Out-of-bounds Read
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Canonical Ubuntu Linux or by Soxproject? Click the Watch button to subscribe.