sound-exchange-project
Consumer Softwareoss-project
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting sound-exchange-project.
- CVE-2023-34432Heap-buffer-overflow in src/formats_i.c7.8
- CVE-2023-34318Heap-buffer-overflow in src/hcom.c7.8
- CVE-2023-32627Floating point exception in src/voc.c6.2
- CVE-2023-26590Floating point exception in src/aiff.c6.2
- CVE-2021-23172A vulnerability was found in SoX, where a heap-buffer-overflow occurs in function startread() in hcom.c file. The vulnerability is exploitable with a crafted hcomn file, that could cause an applica...5.5
- CVE-2021-23159A vulnerability was found in SoX, where a heap-buffer-overflow occurs in function lsx_read_w_buf() in formats_i.c file. The vulnerability is exploitable with a crafted file, that could cause an app...5.5
- CVE-2021-23210A floating point exception (divide-by-zero) issue was discovered in SoX in functon read_samples() of voc.c file. An attacker with a crafted file, could cause an application to crash.5.5
- CVE-2021-33844A floating point exception (divide-by-zero) issue was discovered in SoX in functon startread() of wav.c file. An attacker with a crafted wav file, could cause an application to crash.5.5
- CVE-2022-31651In SoX 14.4.2, there is an assertion failure in rate_init in rate.c in libsox.a.5.5
- CVE-2022-31650In SoX 14.4.2, there is a floating-point exception in lsx_aiffstartwrite in aiff.c in libsox.a.5.5
- CVE-2021-3643A flaw was found in sox 14.4.1. The lsx_adpcm_init function within libsox leads to a global-buffer-overflow. This flaw allows an attacker to input a malicious file, leading to the disclosure of sen...9.1
- CVE-2021-40426A heap-based buffer overflow vulnerability exists in the sphere.c start_read() functionality of Sound Exchange libsox 14.4.2 and master commit 42b3557e. A specially-crafted file can lead to a heap ...8.8
- CVE-2019-1010004SoX - Sound eXchange 14.4.2 and earlier is affected by: Out-of-bounds Read. The impact is: Denial of Service. The component is: read_samples function at xa.c:219. The attack vector is: Victim must ...5.5
- CVE-2019-13590An issue was discovered in libsox.a in SoX 14.4.2. In sox-fmt.h (startread function), there is an integer overflow on the result of integer addition (wraparound to 0) fed into the lsx_calloc macro ...5.5
- CVE-2019-8356An issue was discovered in SoX 14.4.2. One of the arguments to bitrv2 in fft4g.c is not guarded, such that it can lead to write access outside of the statically declared array, aka a stack-based bu...5.5