Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-34432

Опубликовано: 10 июл. 2023
Источник: nvd
CVSS3: 7.8
EPSS Низкий

Описание

A heap buffer overflow vulnerability was found in sox, in the lsx_readbuf function at sox/src/formats_i.c:98:16. This flaw can lead to a denial of service, code execution, or information disclosure.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:sound_exchange_project:sound_exchange:*:*:*:*:*:*:*:*
Версия до 14.4.3 (включая)
Конфигурация 2

Одно из

cpe:2.3:a:fedoraproject:extra_packages_for_enterprise_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*

EPSS

Процентиль: 10%
0.00036
Низкий

7.8 High

CVSS3

Дефекты

CWE-122
CWE-787

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 2 лет назад

A heap buffer overflow vulnerability was found in sox, in the lsx_readbuf function at sox/src/formats_i.c:98:16. This flaw can lead to a denial of service, code execution, or information disclosure.

CVSS3: 7.8
redhat
почти 3 года назад

A heap buffer overflow vulnerability was found in sox, in the lsx_readbuf function at sox/src/formats_i.c:98:16. This flaw can lead to a denial of service, code execution, or information disclosure.

CVSS3: 7.8
debian
больше 2 лет назад

A heap buffer overflow vulnerability was found in sox, in the lsx_read ...

CVSS3: 7.8
github
больше 2 лет назад

A heap buffer overflow vulnerability was found in sox, in the lsx_readbuf function at sox/src/formats_i.c:98:16. This flaw can lead to a denial of service, code execution, or information disclosure.

suse-cvrf
больше 2 лет назад

Security update for sox

EPSS

Процентиль: 10%
0.00036
Низкий

7.8 High

CVSS3

Дефекты

CWE-122
CWE-787