Lucene search

K
cvelistRedhatCVELIST:CVE-2021-23172
HistoryAug 25, 2022 - 7:36 p.m.

CVE-2021-23172

2022-08-2519:36:27
CWE-120
redhat
www.cve.org
2
sox
heap buffer overflow
startread() function
hcom.c file
vulnerability
exploitable
crafted hcomn file
application crash

7.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

34.5%

A vulnerability was found in SoX, where a heap-buffer-overflow occurs in function startread() in hcom.c file. The vulnerability is exploitable with a crafted hcomn file, that could cause an application to crash.

CNA Affected

[
  {
    "product": "SoX (Sound eXchange)",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "Not Known"
      }
    ]
  }
]

7.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

34.5%