CVE-2017-18189

NameCVE-2017-18189
DescriptionIn the startread function in xa.c in Sound eXchange (SoX) through 14.4.2, a corrupt header specifying zero channels triggers an infinite loop with a resultant NULL pointer dereference, which may allow a remote attacker to cause a denial-of-service.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, Mageia, GitHub code/issues, web search, more)
ReferencesDLA-1197-1
NVD severitymedium (attack range: remote)
Debian Bugs881121

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
sox (PTS)jessie14.4.1-5vulnerable
stretch14.4.1-5+deb9u1vulnerable
buster, sid14.4.2-3fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
soxsource(unstable)14.4.2-2medium881121
soxsourcewheezy14.4.0-3+deb7u2mediumDLA-1197-1

Notes

[stretch] - sox <no-dsa> (Minor issue)
https://public-inbox.org/sox-devel/20171109114554.16297-1-mans@mansr.com/raw

Search for package or bug name: Reporting problems