Where
-Infinity
0
Severity
4

A vulnerabilty was found in sox v14.4.3, heap-buffer-overflow vulnerability that exists in the lsxreadbuf function at sox/src/formatsi.c:98:16. This vulnerability could lead to security issues such as denial of service, code execution, or information disclosure.

References: https://sourceforge.net/p/sox/bugs/367/

First published (updated )
Severity
1

A vulnerabilty was found in sox v14.4.3, where floating point exception vulnerability that exists in the readsamples function at sox/src/voc.c:334:18. This vulnerability could lead to security issues such as denial of service.

References: https://sourceforge.net/p/sox/bugs/369/

First published (updated )
Severity
6.2
AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

A floating point exception vulnerability was found in sox, in the lsxaiffstartwrite function at sox/src/aiff.c:622:58. This flaw can lead to a denial of service.

1 / 2
First published (updated )

A vulnerabilty was found in sox v14.4.3, Floating Point Exception vulnerability that exists in the lsxaiffstartwrite function at sox/src/aiff.c:622:58. This vulnerability could lead to security issues such as denial of service.

References: https://sourceforge.net/p/sox/bugs/370/.

First published (updated )
Severity
5.5
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

In SoX 14.4.2, there is a floating-point exception in lsxaiffstartwrite in aiff.c in libsox.a.

First published (updated )
Severity
5.5
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

In SoX 14.4.2, there is an assertion failure in rateinit in rate.c in libsox.a.

First published (updated )
Severity
9.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H

A flaw was found in sox 14.4.1. The lsxadpcminit function within libsox leads to a global-buffer-overflow. This flaw allows an attacker to input a malicious file, leading to the disclosure of sensitive information.

First published (updated )
Severity
1

A vulnerability was found in SoX, where a heap based overflow was found in formatsi.c:376, function lsxreadwbuf.

References: https://sourceforge.net/p/sox/bugs/352/

First published (updated )
Severity
5.5
Divide by Zero
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

A floating point exception (divide-by-zero) issue was discovered in SoX in functon readsamples() of voc.c file. An attacker with a crafted file, could cause an application to crash.

1 / 2
First published (updated )
Severity
5.5
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

A vulnerability was found in SoX where, a heap overflow in hcom.c:161. Function startread with crafted hcomn file the vulnerability is exploitable.

References: https://sourceforge.net/p/sox/bugs/350/

1 / 2
Source: Red Hat
First published (updated )
Severity
1

A vulnerability was found in SoX where, a heap overflow in hcom.c:161. Function startread with crafted hcomn file the vulnerability is exploitable.

References: https://sourceforge.net/p/sox/bugs/350/

First published (updated )
Severity
5.5
Divide by Zero
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

A floating point exception (divide-by-zero) issue was discovered in SoX in functon startread() of wav.c file. An attacker with a crafted wav file, could cause an application to crash.

1 / 2
First published (updated )
Severity
1

A vulnerability was found in SoX where a divide by zero bug in wav.c:967, functon startread. With crafted wav file, it crashes.

References: https://sourceforge.net/p/sox/bugs/349/

First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203