FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2024-04-24 21:00:48 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
3e4ffe76-e0d4-11d8-9b0a-000347a4fa7dSoX buffer overflows when handling .WAV files

Ulf Härnhammar discovered a pair of buffer overflows in the WAV file handling code of SoX. If an attacker can cause her victim to process a specially-crafted WAV file with SoX (e.g. through social engineering or through some other program that relies on SoX), arbitrary code can be executed with the privileges of the victim.


Discovery 2004-07-28
Entry 2004-08-26
sox
gt 12.17.1 le 12.17.4_1

CVE-2004-0557
http://archives.neohapsis.com/archives/vulnwatch/2004-q3/0014.html
http://secunia.com/advisories/12175
http://www.osvdb.org/8267