Vulnerability CVE-2021-33844: Information

Description

A floating point exception (divide-by-zero) issue was discovered in SoX in functon startread() of wav.c file. An attacker with a crafted wav file, could cause an application to crash.

Severity: MEDIUM (5.5) Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Published: Aug. 25, 2022
Modified: Feb. 13, 2023
Error type identifier: CWE-369

Fixed packages

Package name
Branch
Fixed in version
Version from repository
Errata ID
Task #
State
soxsisyphus14.4.2-alt714.4.2-alt7ALT-PU-2024-6289-3344866Fixed
soxsisyphus_e2k14.4.2-alt714.4.2-alt7ALT-PU-2024-6551-1-Fixed
soxsisyphus_riscv6414.4.2-alt714.4.2-alt7ALT-PU-2024-6403-1-Fixed
soxsisyphus_loongarch6414.4.2-alt714.4.2-alt7ALT-PU-2024-6418-1-Fixed
soxp1014.4.2-alt714.4.2-alt7ALT-PU-2024-6378-3344935Fixed
soxp10_e2k14.4.2-alt714.4.2-alt7ALT-PU-2024-6891-1-Fixed
soxc10f114.4.2-alt714.4.2-alt7ALT-PU-2024-6855-3345456Fixed
soxc9f214.4.2-alt714.4.2-alt7ALT-PU-2024-6966-3345644Fixed

References to Advisories, Solutions, and Tools

    1. Configuration 1

      cpe:2.3:a:sox_project:sox:14.4.2-7:*:*:*:*:*:*:*