An issue was discovered in SoX 14.4.2. One of the arguments to bitrv2 in fft4g.c is not guarded, such that it can lead to write access outside of the statically declared array, aka a stack-based buffer overflow.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2019-02-15T23:00:00

Updated: 2024-08-04T21:17:31.147Z

Reserved: 2019-02-15T00:00:00

Link: CVE-2019-8356

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-02-15T23:29:00.370

Modified: 2020-08-24T17:37:01.140

Link: CVE-2019-8356

cve-icon Redhat

Severity : Moderate

Publid Date: 2019-02-07T00:00:00Z

Links: CVE-2019-8356 - Bugzilla