Import Source
https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-44595.json
JSON Data
https://api.test.osv.dev/v1/vulns/AZL-44595
Upstream
Published
2023-07-10T18:15:10Z
Modified
2026-04-01T05:16:41.796271Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
CVE-2023-34318 affecting package sox 14.4.2.0-34
Details

A heap buffer overflow vulnerability was found in sox, in the startread function at sox/src/hcom.c:160:41. This flaw can lead to a denial of service, code execution, or information disclosure.

References

Affected packages

Azure Linux:3 / sox

Package

Name
sox
Purl
pkg:rpm/azure-linux/sox

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Last affected
14.4.2.0-34

Database specific

source
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-44595.json"