CVE-2023-32627: Floating point exception in src/voc.c
A floating point exception vulnerability was found in sox, in the readsamples function at sox/src/voc.c:334:18. This flaw can lead to a denial of service.
Other sources
A vulnerabilty was found in sox v14.4.3, where floating point exception vulnerability that exists in the readsamples function at sox/src/voc.c:334:18. This vulnerability could lead to security issues such as denial of service.
References: https://sourceforge.net/p/sox/bugs/369/
— Red Hat
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-32627?
CVE-2023-32627 is a floating point exception vulnerability found in the read_samples function of sox.
How severe is CVE-2023-32627?
CVE-2023-32627 has a severity rating of medium with a score of 5.5.
Which software versions are affected by CVE-2023-32627?
The affected software versions include sox 14.4.3, Fedoraproject Extra Packages For Enterprise Linux 8.0, Fedoraproject Fedora 38, Redhat Enterprise Linux 6.0 and 7.0.
How can I fix CVE-2023-32627?
To fix CVE-2023-32627, you should update to a version that contains the fix, such as sox 14.4.2+git20190427-1+deb10u3 for Debian, or follow the recommendations provided by your software vendor.
Where can I find more information about CVE-2023-32627?
You can find more information about CVE-2023-32627 at the following references: [Red Hat Security Advisory](https://access.redhat.com/security/cve/CVE-2023-32627), [Red Hat Bugzilla](https://bugzilla.redhat.com/show_bug.cgi?id=2212282), and [SoX Project SourceForge](https://sourceforge.net/p/sox/bugs/369/)