CVE-2014-8145
Publication date 31 December 2014
Last updated 24 July 2024
Ubuntu priority
Multiple heap-based buffer overflows in Sound eXchange (SoX) 14.4.1 and earlier allow remote attackers to have unspecified impact via a crafted WAV file to the (1) start_read or (2) AdpcmReadBlock function.
From the Ubuntu Security Team
It was discovered that SoX incorrectly handled certain media files. An attacker could possibly use this issue to cause a denial of service or other unspecified impact.
Status
Package | Ubuntu Release | Status |
---|---|---|
sox | ||
18.04 LTS bionic |
Not affected
|
|
16.04 LTS xenial |
Fixed 14.4.1-5ubuntu0.1
|
|
14.04 LTS trusty |
Fixed 14.4.1-3ubuntu1.1
|
|