[ GLSA 200407-23 ] SoX: Multiple buffer overflows

From: Thierry Carrez (koon_at_gentoo.org)
Date: 07/30/04

  • Next message: Delian Krustev: "Re: CVS woes: .cvspass"
    Date: Fri, 30 Jul 2004 16:59:35 +0200
    To: gentoo-announce@gentoo.org
    
    

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1

    - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
    Gentoo Linux Security Advisory GLSA 200407-23
    - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
                                                http://security.gentoo.org/
    - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -

      Severity: Normal
         Title: SoX: Multiple buffer overflows
          Date: July 30, 2004
          Bugs: #58733
            ID: 200407-23

    - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -

    Synopsis
    ========

    SoX contains two buffer overflow vulnerabilities in the WAV header
    parser code.

    Background
    ==========

    SoX is a command line utility that can convert various formats of
    computer audio files in to other formats.

    Affected packages
    =================

        -------------------------------------------------------------------
         Package / Vulnerable / Unaffected
        -------------------------------------------------------------------
      1 media-sound/sox <= 12.17.4-r1 >= 12.17.4-r2

    Description
    ===========

    Ulf Harnhammar discovered two buffer overflows in the sox and play
    commands when handling WAV files with specially crafted header fields.

    Impact
    ======

    By enticing a user to play or convert a specially crafted WAV file an
    attacker could execute arbitrary code with the permissions of the user
    running SoX.

    Workaround
    ==========

    There is no known workaround at this time. All users are encouraged to
    upgrade to the latest available version of SoX.

    Resolution
    ==========

    All SoX users should upgrade to the latest version:

        # emerge sync

        # emerge -pv ">=media-sound/sox-12.17.4-r2"
        # emerge ">=media-sound/sox-12.17.4-r2"

    References
    ==========

      [ 1 ] Full Disclosure Announcement

    http://archives.neohapsis.com/archives/fulldisclosure/2004-07/1141.html

    Availability
    ============

    This GLSA and any updates to it are available for viewing at
    the Gentoo Security Website:

        http://security.gentoo.org/glsa/glsa-200407-23.xml

    Concerns?
    =========

    Security is a primary focus of Gentoo Linux and ensuring the
    confidentiality and security of our users machines is of utmost
    importance to us. Any security concerns should be addressed to
    security@gentoo.org or alternatively, you may file a bug at
    http://bugs.gentoo.org.

    License
    =======

    Copyright 2004 Gentoo Foundation, Inc; referenced text
    belongs to its owner(s).

    The contents of this document are licensed under the
    Creative Commons - Attribution / Share Alike license.

    http://creativecommons.org/licenses/by-sa/1.0

    -----BEGIN PGP SIGNATURE-----
    Version: GnuPG v1.2.4 (GNU/Linux)
    Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org

    iD8DBQFBCmJWvcL1obalX08RAijlAJ9C3qaGE3pW9JKve99S0qABwiTbuQCeKcn6
    NdGB0d0mJHQx2OOZtYNdFEw=
    =nuUa
    -----END PGP SIGNATURE-----


  • Next message: Delian Krustev: "Re: CVS woes: .cvspass"

    Relevant Pages

    • Re: Record sound from Sound Card using OGG
      ... >> If you like command line, then certainly use SoX. ... I've been recording vinyl albums like this, and the wav file for two sides ... Or if you have alsa installed, try arecord (another command line program). ... html mail or attachments will go in the spam ...
      (comp.os.linux.misc)
    • Re: audio (acdt01) dump broken? (BETA4 (5))
      ... That the raw audio data on a cd is raw, and not a wav file... ... WAV files ... so, if you want, you can use sox to convert the raw audio data into ...
      (freebsd-current)
    • Re: audio (acdt01) dump broken? (BETA4 (5))
      ... That the raw audio data on a cd is raw, and not a wav file... ... WAV files ... so, if you want, you can use sox to convert the raw audio data into ...
      (freebsd-stable)
    • How to calculate a value for mencoder -af volume
      ... from the mixing desk, so the audio is better quality, but it's much ... This filter has a second feature: ... wav and analysed it in sox. ...
      (uk.comp.os.linux)
    • [Full-Disclosure] [ GLSA 200407-23 ] SoX: Multiple buffer overflows
      ... SoX contains two buffer overflow vulnerabilities in the WAV header ... commands when handling WAV files with specially crafted header fields. ... Security is a primary focus of Gentoo Linux and ensuring the ...
      (Full-Disclosure)

  • Quantcast