cbcvebase.
CVE-2023-26590
published 2023-07-10

CVE-2023-26590: A floating point exception vulnerability was found in sox, in the lsx_aiffstartwrite function at sox/src/aiff.c:622:58. This flaw can lead to a denial of…

medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
A floating point exception vulnerability was found in sox, in the lsx_aiffstartwrite function at sox/src/aiff.c:622:58. This flaw can lead to a denial of service.

Affected

6 ranges
VendorProductVersion rangeFixed in
debiansox< sox 14.4.2+git20190427-3.1 (bookworm)sox 14.4.2+git20190427-3.1 (bookworm)
fedoraprojectextra_packages_for_enterprise_linux
fedoraprojectfedora
redhatenterprise_linux
redhatenterprise_linux
sound_exchange_projectsound_exchange

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
CVE-2023-26590 — Debian SOX vulnerability | cvebase