Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-1010004

Опубликовано: 15 июл. 2019
Источник: debian
EPSS Низкий

Описание

SoX - Sound eXchange 14.4.2 and earlier is affected by: Out-of-bounds Read. The impact is: Denial of Service. The component is: read_samples function at xa.c:219. The attack vector is: Victim must open specially crafted .xa file. NOTE: this may overlap CVE-2017-18189.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
soxfixed14.4.2-2package
soxfixed14.4.1-5+deb9u2stretchpackage

Примечания

  • https://github.com/mansr/sox/commit/7a8ceb86212b28243bbb6d0de636f0dfbe833e53

EPSS

Процентиль: 67%
0.01263
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 7 лет назад

SoX - Sound eXchange 14.4.2 and earlier is affected by: Out-of-bounds Read. The impact is: Denial of Service. The component is: read_samples function at xa.c:219. The attack vector is: Victim must open specially crafted .xa file. NOTE: this may overlap CVE-2017-18189.

CVSS3: 3.3
redhat
около 7 лет назад

SoX - Sound eXchange 14.4.2 and earlier is affected by: Out-of-bounds Read. The impact is: Denial of Service. The component is: read_samples function at xa.c:219. The attack vector is: Victim must open specially crafted .xa file. NOTE: this may overlap CVE-2017-18189.

CVSS3: 5.5
nvd
около 7 лет назад

SoX - Sound eXchange 14.4.2 and earlier is affected by: Out-of-bounds Read. The impact is: Denial of Service. The component is: read_samples function at xa.c:219. The attack vector is: Victim must open specially crafted .xa file. NOTE: this may overlap CVE-2017-18189.

github
больше 4 лет назад

SoX - Sound eXchange 14.4.2 and earlier is affected by: Out-of-bounds Read. The impact is: Denial of Service. The component is: read_samples function at xa.c:219. The attack vector is: Victim must open specially crafted .xa file. NOTE: this may overlap CVE-2017-18189.

EPSS

Процентиль: 67%
0.01263
Низкий