Vulnerabilities > Sound Exchange Project > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-07-15 CVE-2019-1010004 Out-of-bounds Read vulnerability in Sound Exchange Project Sound Exchange
SoX - Sound eXchange 14.4.2 and earlier is affected by: Out-of-bounds Read.
4.3
2019-07-14 CVE-2019-13590 NULL Pointer Dereference vulnerability in Sound Exchange Project Sound Exchange 14.4.2
An issue was discovered in libsox.a in SoX 14.4.2.
local
low complexity
sound-exchange-project CWE-476
5.5
2019-02-15 CVE-2019-8357 NULL Pointer Dereference vulnerability in Sound Exchange Project Sound Exchange 14.4.2
An issue was discovered in SoX 14.4.2.
4.3
2019-02-15 CVE-2019-8356 Improper Validation of Array Index vulnerability in Sound Exchange Project Sound Exchange 14.4.2
An issue was discovered in SoX 14.4.2.
4.3
2019-02-15 CVE-2019-8355 Integer Overflow or Wraparound vulnerability in Sound Exchange Project Sound Exchange 14.4.2
An issue was discovered in SoX 14.4.2.
4.3
2019-02-15 CVE-2019-8354 Integer Overflow or Wraparound vulnerability in multiple products
An issue was discovered in SoX 14.4.2.
5.0
2017-10-19 CVE-2017-15642 Use After Free vulnerability in multiple products
In lsx_aiffstartread in aiff.c in Sound eXchange (SoX) 14.4.2, there is a Use-After-Free vulnerability triggered by supplying a malformed AIFF file.
4.3
2017-10-16 CVE-2017-15372 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
There is a stack-based buffer overflow in the lsx_ms_adpcm_block_expand_i function of adpcm.c in Sound eXchange (SoX) 14.4.2.
4.3
2017-10-16 CVE-2017-15371 Reachable Assertion vulnerability in multiple products
There is a reachable assertion abort in the function sox_append_comment() in formats.c in Sound eXchange (SoX) 14.4.2.
4.3
2017-10-16 CVE-2017-15370 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
There is a heap-based buffer overflow in the ImaExpandS function of ima_rw.c in Sound eXchange (SoX) 14.4.2.
4.3