Show filters
15 Total Results
Displaying 11-15 of 15
Sort by:
Attacker Value
Unknown

CVE-2022-31650

Disclosure Date: May 25, 2022 (last updated February 23, 2025)
In SoX 14.4.2, there is a floating-point exception in lsx_aiffstartwrite in aiff.c in libsox.a.
Attacker Value
Unknown

CVE-2021-3643

Disclosure Date: May 02, 2022 (last updated February 23, 2025)
A flaw was found in sox 14.4.1. The lsx_adpcm_init function within libsox leads to a global-buffer-overflow. This flaw allows an attacker to input a malicious file, leading to the disclosure of sensitive information.
Attacker Value
Unknown

CVE-2021-40426

Disclosure Date: March 23, 2022 (last updated February 23, 2025)
A heap-based buffer overflow vulnerability exists in the sphere.c start_read() functionality of Sound Exchange libsox 14.4.2 and master commit 42b3557e. A specially-crafted file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.
Attacker Value
Unknown

CVE-2006-0727

Disclosure Date: February 16, 2006 (last updated February 22, 2025)
SQL injection vulnerability in mstrack.php in MusOX DF MSAnalysis (DFMSA), as used in some environments that use CPG-Nuke Dragonfly CMS, allows remote attackers to trigger path disclosure from a SQL syntax error, and possibly execute arbitrary SQL commands, via certain query data, probably involving the profile name.
0
Attacker Value
Unknown

CVE-2004-0557

Disclosure Date: August 06, 2004 (last updated February 22, 2025)
Multiple buffer overflows in the st_wavstartread function in wav.c for Sound eXchange (SoX) 12.17.2 through 12.17.4 allow remote attackers to execute arbitrary code via certain WAV file header fields.
0