CVE-2022-31651: Medium severity sox (sound exchange) vulnerability
Published May 25, 2022
·Updated
In SoX 14.4.2, there is an assertion failure in rateinit in rate.c in libsox.a.
Affected Software
3 affected componentsFixes available
debian/sox<=14.4.2+git20190427-1
14.4.2+git20190427-1+deb10u314.4.2+git20190427-2+deb11u214.4.2+git20190427-3.5
Sox Project Sox=14.4.2
Sound Exchange Project Sound Exchange=14.4.2
Event History
May 25, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·11:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-31651?
The severity of CVE-2022-31651 is medium with a CVSS score of 5.5.
2
What is the affected software of CVE-2022-31651?
The affected software of CVE-2022-31651 is SoX version 14.4.2.
3
How can I fix CVE-2022-31651?
To fix CVE-2022-31651, update the SoX package to version 14.4.2+git20190427-3.5 or later.
4
Where can I find more information about CVE-2022-31651?
You can find more information about CVE-2022-31651 on the following references: [1] [2] [3]
5
What is the CWE of CVE-2022-31651?
The CWE of CVE-2022-31651 is CWE-617.