CVE-2021-40426
published 2022-04-14CVE-2021-40426: A heap-based buffer overflow vulnerability exists in the sphere.c start_read() functionality of Sound Exchange libsox 14.4.2 and master commit 42b3557e. A…
PriorityP346high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
EPSS
2.21%
80.6th percentile
A heap-based buffer overflow vulnerability exists in the sphere.c start_read() functionality of Sound Exchange libsox 14.4.2 and master commit 42b3557e. A specially-crafted file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | sox | < sox 14.4.2+git20190427-3.1 (bookworm) | sox 14.4.2+git20190427-3.1 (bookworm) |
| sound_exchange | libsox | — | — |
| sound_exchange | libsox | — | — |
| sound_exchange_project | sound_exchange | — | — |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv3.010.0CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv8.8HIGH
vendor_debian8.8HIGH
vendor_redhat8.8HIGH
vendor_ubuntu5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
sox regression
osv·2023-03-20·CVSS 5.5
CVE-2021-33844 [MEDIUM] sox regression
sox regression
USN-5904-1 fixed vulnerabilities in SoX. It was discovered that the fix for
CVE-2021-33844 was incomplete. This update fixes the problem.
Original advisory details:
Helmut Grohne discovered that SoX incorrectly handled certain inputs. If a
user or an automated system were tricked into opening a specially crafted
input file, a remote attacker could possibly use this issue to cause a
denial of service. This issue only affected Ubuntu 14.04 ESM, Ubuntu 16.04 ESM,
and Ubuntu 18.04 LTS. (CVE-2019-13590)
Helmut Grohne discovered that SoX incorrectly handled certain inputs. If a
user or an automated system were tricked into opening a specially crafted
input file, a remote attacker could possibly use this issue to cause a
denial of service. (CVE-2021-23159, CVE-2021-23172, CVE-2
OSV
sox vulnerabilities
osv·2023-03-02·CVSS 5.5
CVE-2019-13590 [MEDIUM] sox vulnerabilities
sox vulnerabilities
Helmut Grohne discovered that SoX incorrectly handled certain inputs. If a
user or an automated system were tricked into opening a specially crafted
input file, a remote attacker could possibly use this issue to cause a
denial of service. This issue only affected Ubuntu 14.04 ESM, Ubuntu 16.04 ESM,
and Ubuntu 18.04 LTS. (CVE-2019-13590)
Helmut Grohne discovered that SoX incorrectly handled certain inputs. If a
user or an automated system were tricked into opening a specially crafted
input file, a remote attacker could possibly use this issue to cause a
denial of service. (CVE-2021-23159, CVE-2021-23172, CVE-2021-23210,
CVE-2021-33844, CVE-2021-3643, CVE-2021-40426, CVE-2022-31650, and
CVE-2022-31651)
GHSA
GHSA-5x4j-m9qh-g9w5: A heap-based buffer overflow vulnerability exists in the sphere
ghsa_unreviewed·2022-04-15
CVE-2021-40426 [HIGH] CWE-122 GHSA-5x4j-m9qh-g9w5: A heap-based buffer overflow vulnerability exists in the sphere
A heap-based buffer overflow vulnerability exists in the sphere.c start_read() functionality of Sound Exchange libsox 14.4.2 and master commit 42b3557e. A specially-crafted file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.
OSV
CVE-2021-40426: A heap-based buffer overflow vulnerability exists in the sphere
osv·2022-04-14·CVSS 8.8
CVE-2021-40426 [HIGH] CVE-2021-40426: A heap-based buffer overflow vulnerability exists in the sphere
A heap-based buffer overflow vulnerability exists in the sphere.c start_read() functionality of Sound Exchange libsox 14.4.2 and master commit 42b3557e. A specially-crafted file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.
Ubuntu
SoX regression
vendor_ubuntu·2023-03-20·CVSS 5.5
CVE-2021-33844 [MEDIUM] SoX regression
Title: SoX regression
Summary: USN-5904-1 caused a minor regression in SoX.
USN-5904-1 fixed vulnerabilities in SoX. It was discovered that the fix for
CVE-2021-33844 was incomplete. This update fixes the problem.
Original advisory details:
Helmut Grohne discovered that SoX incorrectly handled certain inputs. If a
user or an automated system were tricked into opening a specially crafted
input file, a remote attacker could possibly use this issue to cause a
denial of service. This issue only affected Ubuntu 14.04 ESM, Ubuntu 16.04 ESM,
and Ubuntu 18.04 LTS. (CVE-2019-13590)
Helmut Grohne discovered that SoX incorrectly handled certain inputs. If a
user or an automated system were tricked into opening a specially crafted
input file, a remote attacker could possibly use this issue to cau
Ubuntu
SoX vulnerabilities
vendor_ubuntu·2023-03-02·CVSS 5.5
CVE-2021-3643 [MEDIUM] SoX vulnerabilities
Title: SoX vulnerabilities
Summary: Several security issues were fixed in SoX.
Helmut Grohne discovered that SoX incorrectly handled certain inputs. If a
user or an automated system were tricked into opening a specially crafted
input file, a remote attacker could possibly use this issue to cause a
denial of service. This issue only affected Ubuntu 14.04 ESM, Ubuntu 16.04 ESM,
and Ubuntu 18.04 LTS. (CVE-2019-13590)
Helmut Grohne discovered that SoX incorrectly handled certain inputs. If a
user or an automated system were tricked into opening a specially crafted
input file, a remote attacker could possibly use this issue to cause a
denial of service. (CVE-2021-23159, CVE-2021-23172, CVE-2021-23210,
CVE-2021-33844, CVE-2021-3643, CVE-2021-40426, CVE-2022-31650, and
CVE-2022-31651)
Instruc
Red Hat
sox: heap-based buffer overflow vulnerability exists in the sphere.c start_read() function
vendor_redhat·2022-04-14·CVSS 8.8
CVE-2021-40426 [HIGH] CWE-787 sox: heap-based buffer overflow vulnerability exists in the sphere.c start_read() function
sox: heap-based buffer overflow vulnerability exists in the sphere.c start_read() function
A heap-based buffer overflow vulnerability exists in the sphere.c start_read() functionality of Sound Exchange libsox 14.4.2 and master commit 42b3557e. A specially-crafted file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.
A heap-based buffer overflow vulnerability exists in the sphere.c start_read() functionality of the Sound Exchange sox library. A specially-crafted file can lead to a heap buffer overflow. This flaw allows an attacker to provide a malicious file to trigger this vulnerability.
Package: sox (Red Hat Enterprise Linux 6) - Out of support scope
Package: sox (Red Hat Enterprise Linux 7) - Out of support scope
Debian
CVE-2021-40426: sox - A heap-based buffer overflow vulnerability exists in the sphere.c start_read() f...
vendor_debian·2021·CVSS 8.8
CVE-2021-40426 [HIGH] CVE-2021-40426: sox - A heap-based buffer overflow vulnerability exists in the sphere.c start_read() f...
A heap-based buffer overflow vulnerability exists in the sphere.c start_read() functionality of Sound Exchange libsox 14.4.2 and master commit 42b3557e. A specially-crafted file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.
Scope: local
bookworm: resolved (fixed in 14.4.2+git20190427-3.1)
bullseye: resolved (fixed in 14.4.2+git20190427-2+deb11u1)
trixie: resolved (fixed in 14.4.2+git20190427-3.1)
No detection rules found.
No public exploits indexed.
Talos
Vulnerability Spotlight: Heap overflow in Sound Exchange libsox library
blogs_talos·2022-03-23·CVSS 8.8
[HIGH] Vulnerability Spotlight: Heap overflow in Sound Exchange libsox library
## Vulnerability Spotlight: Heap overflow in Sound Exchange libsox library
Lilith >_> of Cisco Talos discovered these vulnerabilities.
Cisco Talos recently discovered an exploitable heap-based buffer overflow vulnerability in the sphere.c start_read() functionality of Sound Exchange libsox.
The libsox library is a library of sound sample file format readers/writers and sound effects processors. It's been in development for several years, and now supports several file formats including .wav, .flac, and .mp3 (with the aid of an external library).
TALOS-2021-1434 (CVE-2021-40426) can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.
This vulnerability specifically exists in the way this library handles NIST Speech Header Resources (SP
Talos
Vulnerability Spotlight: Heap overflow in Sound Exchange libsox library
blogs_talos·2022-03-23·CVSS 8.8
[HIGH] Vulnerability Spotlight: Heap overflow in Sound Exchange libsox library
Lilith >_> of Cisco Talos discovered these vulnerabilities.
Cisco Talos recently discovered an exploitable heap-based buffer overflow vulnerability in the sphere.c start_read() functionality of Sound Exchange libsox.
The libsox library is a library of sound sample file format readers/writers and sound effects processors. It's been in development for several years, and now supports several file formats including .wav, .flac, and .mp3 (with the aid of an external library).
TALOS-2021-1434 (CVE-2021-40426) can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.
This vulnerability specifically exists in the way this library handles NIST Speech Header Resources (SPHERE) files, which are used for speech recognition.
Cisco Talos is releasin
http://www.openwall.com/lists/oss-security/2023/02/03/3https://lists.debian.org/debian-lts-announce/2023/02/msg00009.htmlhttps://talosintelligence.com/vulnerability_reports/TALOS-2021-1434https://www.debian.org/security/2023/dsa-5356http://www.openwall.com/lists/oss-security/2023/02/03/3https://lists.debian.org/debian-lts-announce/2023/02/msg00009.htmlhttps://talosintelligence.com/vulnerability_reports/TALOS-2021-1434https://www.debian.org/security/2023/dsa-5356
2022-04-14
Published