CVE-2017-18189

Publication date

2018-02-15 10:00:00

Family

mitre

State

PUBLISHED

Description

In the startread function in xa.c in Sound eXchange (SoX) through 14.4.2, a corrupt header specifying zero channels triggers an infinite loop with a resultant NULL pointer dereference, which may allow a remote attacker to cause a denial-of-service.