CVE-2021-33844
Summary
| CVE | CVE-2021-33844 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-08-25 20:15:00 UTC |
| Updated | 2023-02-12 22:15:00 UTC |
| Description | A floating point exception (divide-by-zero) issue was discovered in SoX in functon startread() of wav.c file. An attacker with a crafted wav file, could cause an application to crash. |
Risk And Classification
Problem Types: CWE-369
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Sox Project | Sox | 14.4.2-7 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| oss-security - Re: sox: patches for old vulnerabilities | MLIST | www.openwall.com | |
| 1975664 – (CVE-2021-33844) CVE-2021-33844 SoX: divide by zero crash in wav.c | MISC | bugzilla.redhat.com | |
| [SECURITY] [DLA 3315-1] sox security update | MLIST | lists.debian.org | |
| oss-security - sox: patches for old vulnerabilities | MLIST | www.openwall.com | |
| oss-security - Re: sox: patches for old vulnerabilities | MLIST | www.openwall.com | |
| SoX - Sound eXchange / Bugs / #349 div zero crash in wav.c | MISC | sourceforge.net | |
| Red Hat Customer Portal - Access to 24x7 support and knowledge | MISC | access.redhat.com | |
| oss-security - Re: sox: patches for old vulnerabilities | MLIST | www.openwall.com | |
| CVE-2021-33844 - sox - Arch Linux | MISC | security.archlinux.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 181553 Debian Security Update for sox (DLA 3315-1)
- 181674 Debian Security Update for sox (DSA 5356-1)
- 182131 Debian Security Update for sox (CVE-2021-33844)
- 199206 Ubuntu Security Notification for SoX Vulnerabilities (USN-5904-1)
- 503268 Alpine Linux Security Update for sox
- 506247 Alpine Linux Security Update for sox