CVE-2023-34318: Heap-buffer-overflow in src/hcom.c
A heap buffer overflow vulnerability was found in sox, in the startread function at sox/src/hcom.c:160:41. This flaw can lead to a denial of service, code execution, or information disclosure.
Other sources
A vulnerabilty was found in sox v14.4.3, heap-buffer-overflow vulnerability that exists in the startread function at sox/src/hcom.c:160:41. This vulnerability could lead to security issues such as denial of service, code execution, or information disclosure
References: https://sourceforge.net/p/sox/bugs/368/
— Red Hat
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-34318?
The severity of CVE-2023-34318 is high.
Where can I find more information about CVE-2023-34318?
You can find more information about CVE-2023-34318 on the Red Hat Security Portal.
How does CVE-2023-34318 affect sox?
CVE-2023-34318 affects sox version 14.4.3.
What can an attacker do with CVE-2023-34318?
An attacker exploiting CVE-2023-34318 can perform a denial of service, execute arbitrary code, or disclose information.
How can I fix CVE-2023-34318?
To fix CVE-2023-34318, it is recommended to update to a patched version of sox.