CVE-2017-18189
15.02.2018, 10:29
In the startread function in xa.c in Sound eXchange (SoX) through 14.4.2, a corrupt header specifying zero channels triggers an infinite loop with a resultant NULL pointer dereference, which may allow a remote attacker to cause a denial-of-service.Enginsight
Vendor | Product | Version |
---|---|---|
sound_exchange_project | sound_exchange | 𝑥 ≤ 14.4.2 |
debian | debian_linux | 8.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References