Revision Date: | 2004-07-29 | Version: | 502 |
Title: | RHSA-2004:409: sox security update (Important) |
Description: | SoX (Sound eXchange) is a sound file format converter. SoX can convert between many different digitized sound formats and perform simple sound manipulation functions, including sound effects.
Buffer overflows existed in the parsing of WAV file header fields. It was possible that a malicious WAV file could have caused arbitrary code to be executed when the file was played or converted. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CAN-2004-0557 to these issues.
All users of sox should upgrade to these updated packages, which resolve these issues as well as fix a number of minor bugs.
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | CVE-2004-0557 RHSA-2004:409-01
|
Platform(s): | Red Hat Enterprise Linux 3
| Product(s): | |
Definition Synopsis |
Red Hat Enterprise Linux 3 is installed AND Package Information
sox-devel is earlier than 0:12.17.4-4.3
AND sox-devel is signed with Red Hat master key
OR
sox is earlier than 0:12.17.4-4.3
AND sox is signed with Red Hat master key
|