Описание
A floating point exception (divide-by-zero) issue was discovered in SoX in functon startread() of wav.c file. An attacker with a crafted wav file, could cause an application to crash.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| sox | fixed | 14.4.2+git20190427-3.1 | package |
Примечания
https://bugzilla.redhat.com/show_bug.cgi?id=1975664
https://sourceforge.net/p/sox/bugs/349/
https://www.openwall.com/lists/oss-security/2023/02/03/3
Связанные уязвимости
A floating point exception (divide-by-zero) issue was discovered in SoX in functon startread() of wav.c file. An attacker with a crafted wav file, could cause an application to crash.
A floating point exception (divide-by-zero) issue was discovered in SoX in functon startread() of wav.c file. An attacker with a crafted wav file, could cause an application to crash.
A floating point exception (divide-by-zero) issue was discovered in SoX in functon startread() of wav.c file. An attacker with a crafted wav file, could cause an application to crash.
A floating point exception (divide-by-zero) issue was discovered in SoX in functon startread() of wav.c file. An attacker with a crafted wav file, could cause an application to crash.
Уязвимость функции startread() компонента wav.c программы обработки звука SoX, позволяющая нарушителю вызвать отказ в обслуживании