NULL pointer dereference - CVE-2017-18189

 

NULL pointer dereference - CVE-2017-18189

Published: February 15, 2018 / Updated: August 4, 2020


Vulnerability identifier: #VU33438
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-18189
CWE-ID: CWE-476
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to a NULL pointer dereference error in the startread function in xa.c in Sound eXchange (SoX) through 14.4.2, a corrupt header specifying zero channels triggers an infinite loop with a resultant NULL pointer dereference, which may allow a remote attacker to cause a denial-of-service. A remote attacker can perform a denial of service (DoS) attack.


Affected software

Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, big endian
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux for Power, little endian
Fedora
sox (Alpine package)
sox (Red Hat package)
sox

How to mitigate CVE-2017-18189

Cybersecurity Help is currently unaware of any official solution to address this vulnerability.

sox (Alpine package) - update to 14.4.2-r5
sox (Red Hat package) - update to 14.4.1-7.el7
sox - addressed in versions 14.4.2.0-28.fc30, 14.4.2.0-28.fc31

External References

Related Security Bulletins