Oval Definition:oval:com.redhat.rhsa:def:20040409
Revision Date:2004-07-29Version:502
Title:RHSA-2004:409: sox security update (Important)
Description:SoX (Sound eXchange) is a sound file format converter. SoX can convert between many different digitized sound formats and perform simple sound manipulation functions, including sound effects.

Buffer overflows existed in the parsing of WAV file header fields. It was possible that a malicious WAV file could have caused arbitrary code to be executed when the file was played or converted. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CAN-2004-0557 to these issues.

All users of sox should upgrade to these updated packages, which resolve these issues as well as fix a number of minor bugs.
Family:unixClass:patch
Status:Reference(s):CVE-2004-0557
RHSA-2004:409-01
Platform(s):Red Hat Enterprise Linux 3
Product(s):
Definition Synopsis
  • Red Hat Enterprise Linux 3 is installed
  • AND Package Information
  • sox-devel is earlier than 0:12.17.4-4.3
  • AND sox-devel is signed with Red Hat master key
  • OR
  • sox is earlier than 0:12.17.4-4.3
  • AND sox is signed with Red Hat master key
  • BACK