=== chris14_ is now known as chris14 | ||
rouca | Hi, just an information from debian side CVE-2022-31650 fix CVE-2023-26590 | 09:51 |
---|---|---|
-ubottu:#ubuntu-security- In SoX 14.4.2, there is a floating-point exception in lsx_aiffstartwrite in aiff.c in libsox.a. <https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-31650> | 09:51 | |
-ubottu:#ubuntu-security- A floating point exception vulnerability was found in sox, in the lsx_aiffstartwrite function at sox/src/aiff.c:622:58. This flaw can lead to a denial of service. <https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-26590> | 09:51 | |
rouca | CVE-2023-34432 | 10:20 |
-ubottu:#ubuntu-security- A heap buffer overflow vulnerability was found in sox, in the lsx_readbuf function at sox/src/formats_i.c:98:16. This flaw can lead to a denial of service, code execution, or information disclosure. <https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-34432> | 10:20 | |
rouca | is fixed by fix of CVE-2021-23159 and CVE-2021-23172 | 10:20 |
-ubottu:#ubuntu-security- A vulnerability was found in SoX, where a heap-buffer-overflow occurs in function lsx_read_w_buf() in formats_i.c file. The vulnerability is exploitable with a crafted file, that could cause an application to crash. <https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-23159> | 10:20 | |
-ubottu:#ubuntu-security- A vulnerability was found in SoX, where a heap-buffer-overflow occurs in function startread() in hcom.c file. The vulnerability is exploitable with a crafted hcomn file, that could cause an application to crash. <https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-23172> | 10:20 |
Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!