Vulnerability index

Browse CVEs

13 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Sound Exchange MEDIUM 5.5
CVE-2021-23210

A floating point exception (divide-by-zero) issue was discovered in SoX in functon read_samples() of voc.c file. An attacker with a crafted file, cou…

No fix yet
Fix from $1,600 2022-08-25
Sound Exchange MEDIUM 5.5
CVE-2021-33844

A floating point exception (divide-by-zero) issue was discovered in SoX in functon startread() of wav.c file. An attacker with a crafted wav file, co…

No fix yet
Fix from $1,600 2022-08-25
Sound Exchange MEDIUM 5.5
CVE-2021-23159

A vulnerability was found in SoX, where a heap-buffer-overflow occurs in function lsx_read_w_buf() in formats_i.c file. The vulnerability is exploita…

No fix yet
Fix from $1,600 2022-08-25
Sound Exchange MEDIUM 5.5
CVE-2021-23172

A vulnerability was found in SoX, where a heap-buffer-overflow occurs in function startread() in hcom.c file. The vulnerability is exploitable with a…

No fix yet
Fix from $1,600 2022-08-25
Sound Exchange MEDIUM 5.5
CVE-2022-31650

In SoX 14.4.2, there is a floating-point exception in lsx_aiffstartwrite in aiff.c in libsox.a.

No fix yet
Fix from $1,600 2022-05-25
Sound Exchange MEDIUM 5.5
CVE-2022-31651

In SoX 14.4.2, there is an assertion failure in rate_init in rate.c in libsox.a.

No fix yet
Fix from $1,600 2022-05-25
Sound Exchange CRITICAL 9.1
CVE-2021-3643

A flaw was found in sox 14.4.1. The lsx_adpcm_init function within libsox leads to a global-buffer-overflow. This flaw allows an attacker to input a …

Mitigation only
Fix from $2,300 2022-05-02
Sound Exchange HIGH 8.8
CVE-2021-40426

A heap-based buffer overflow vulnerability exists in the sphere.c start_read() functionality of Sound Exchange libsox 14.4.2 and master commit 42b355…

No fix yet
Fix from $1,950 2022-04-14
Sound Exchange MEDIUM 5.5
CVE-2019-1010004

SoX - Sound eXchange 14.4.2 and earlier is affected by: Out-of-bounds Read. The impact is: Denial of Service. The component is: read_samples function…

Fix: after 14.4.2
Fix from $1,600 2019-07-15
Sound Exchange MEDIUM 5.5
CVE-2019-13590

An issue was discovered in libsox.a in SoX 14.4.2. In sox-fmt.h (startread function), there is an integer overflow on the result of integer addition …

No fix yet
Fix from $1,600 2019-07-14
Sound Exchange MEDIUM 5.5
CVE-2019-8355

An issue was discovered in SoX 14.4.2. In xmalloc.h, there is an integer overflow on the result of multiplication fed into the lsx_valloc macro that …

Mitigation only
Fix from $1,600 2019-02-15
Sound Exchange MEDIUM 5.5
CVE-2019-8356

An issue was discovered in SoX 14.4.2. One of the arguments to bitrv2 in fft4g.c is not guarded, such that it can lead to write access outside of the…

No fix yet
Fix from $1,600 2019-02-15
Sound Exchange MEDIUM 5.5
CVE-2019-8357

An issue was discovered in SoX 14.4.2. lsx_make_lpf in effect_i_dsp.c allows a NULL pointer dereference.

Mitigation only
Fix from $1,600 2019-02-15