CVE Vulnerabilities

CVE-2004-0557

Published: Aug 06, 2004 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Multiple buffer overflows in the st_wavstartread function in wav.c for Sound eXchange (SoX) 12.17.2 through 12.17.4 allow remote attackers to execute arbitrary code via certain WAV file header fields.

Affected Software

NameVendorStart VersionEnd Version
SoxSox12.17.2 (including)12.17.2 (including)
SoxSox12.17.3 (including)12.17.3 (including)
SoxSox12.17.4 (including)12.17.4 (including)
LinuxConectiva8.0 (including)8.0 (including)
LinuxConectiva9.0 (including)9.0 (including)
LinuxConectiva10.0 (including)10.0 (including)
Red Hat Enterprise Linux 3RedHatsox-0:12.17.4-4.3*
SoxUbuntudapper*
SoxUbuntudevel*
SoxUbuntuedgy*
SoxUbuntufeisty*

References