Опубликовано: 31 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 6.7
CVSS3: 7.5
Описание
SoX 14.4.2 contains a division by zero vulnerability when handling WAV files that can cause program crashes. Attackers can trigger a floating point exception by providing a specially crafted WAV file that causes arithmetic errors during sound file processing.
SoX 14.4.2 contains a division by zero vulnerability when handling WAV files that can cause program crashes. Attackers can trigger a floating point exception by providing a specially crafted WAV file that causes arithmetic errors during sound file processing.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2022-50798
- https://en.wikipedia.org/wiki/SoX
- https://www.exploit-db.com/exploits/51034
- https://www.vulncheck.com/advisories/sox-denial-of-service-vulnerability-via-wav-file-processing
- https://www.zeroscience.mk/en/vulnerabilities/ZSL-2022-5712.php
- http://sox.sourceforge.net
Связанные уязвимости
ubuntu
около 1 месяца назад
Rejected reason: This candidate is a duplicate of CVE-2017-11359.
nvd
около 1 месяца назад
Rejected reason: This candidate is a duplicate of CVE-2017-11359.