Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-34432

Опубликовано: 10 июл. 2023
Источник: nvd
CVSS3: 7.8
EPSS Низкий

Описание

A heap buffer overflow vulnerability was found in sox, in the lsx_readbuf function at sox/src/formats_i.c:98:16. This flaw can lead to a denial of service, code execution, or information disclosure.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:sound_exchange_project:sound_exchange:*:*:*:*:*:*:*:*
Версия до 14.4.3 (включая)
Конфигурация 2

Одно из

cpe:2.3:a:fedoraproject:extra_packages_for_enterprise_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*

EPSS

Процентиль: 32%
0.00389
Низкий

7.8 High

CVSS3

Дефекты

CWE-122
CWE-787

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 3 лет назад

A heap buffer overflow vulnerability was found in sox, in the lsx_readbuf function at sox/src/formats_i.c:98:16. This flaw can lead to a denial of service, code execution, or information disclosure.

CVSS3: 7.8
redhat
больше 3 лет назад

A heap buffer overflow vulnerability was found in sox, in the lsx_readbuf function at sox/src/formats_i.c:98:16. This flaw can lead to a denial of service, code execution, or information disclosure.

CVSS3: 7.8
debian
около 3 лет назад

A heap buffer overflow vulnerability was found in sox, in the lsx_read ...

CVSS3: 7.8
github
около 3 лет назад

A heap buffer overflow vulnerability was found in sox, in the lsx_readbuf function at sox/src/formats_i.c:98:16. This flaw can lead to a denial of service, code execution, or information disclosure.

suse-cvrf
почти 3 года назад

Security update for sox

EPSS

Процентиль: 32%
0.00389
Низкий

7.8 High

CVSS3

Дефекты

CWE-122
CWE-787