Multiple buffer overflows in the st_wavstartread function in wav.c for Sound eXchange (SoX) 12.17.2 through 12.17.4 allow remote attackers to execute arbitrary code via certain WAV file header fields.
| Software | From | Fixed in |
|---|---|---|
| conectiva / linux | 9.0 | 9.0.x |
| sox / sox | 12.17.4 | 12.17.4.x |
| sox / sox | 12.17.2 | 12.17.2.x |
| conectiva / linux | 8.0 | 8.0.x |
| sox / sox | 12.17.3 | 12.17.3.x |
| conectiva / linux | 10.0 | 10.0.x |
| redhat / fedora_core | core_2.0 | core_2.0.x |
| redhat / enterprise_linux_desktop | 3.0 | 3.0.x |
| redhat / enterprise_linux | 3.0 | 3.0.x |
| redhat / fedora_core | core_1.0 | core_1.0.x |
| gentoo / linux | 1.4 | 1.4.x |