Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Libsox Project Subscribe
Filtered by product Libsox
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-40426 1 Libsox Project 1 Libsox 2023-02-22 6.8 MEDIUM 8.8 HIGH
A heap-based buffer overflow vulnerability exists in the sphere.c start_read() functionality of Sound Exchange libsox 14.4.2 and master commit 42b3557e. A specially-crafted file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.