CVE Database
/

CVE-2019-8354

Back to search

CVE-2019-8354

Published: Feb 15, 2019

Modified: Aug 4, 2024

PUBLISHED

Description

An issue was discovered in SoX 14.4.2. lsx_make_lpf in effect_i_dsp.c has an integer overflow on the result of multiplication fed into malloc. When the buffer is allocated, it is smaller than expected, leading to a heap-based buffer overflow.

VendorProductVersions

n/a

n/a

affected
n/a

References

USN-4079-1
vendor-advisory
x_refsource_UBUNTU
USN-4079-2
vendor-advisory
x_refsource_UBUNTU

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now