sox_ng wiki - Distro-RedHat


Distro Red Hat

Fedora's source rpm contains a modified version of sox-14.4.2 and some patches.

The modifications are: * add a missing copyright statement for libgsm. This has been be put back in sox_ng, thanks. * remove lpc10, presumably for its doubtful copyright status. In sox_ng the copyright is fixed thanks to legal advice from the FSF leading to a new upstream version.

All bug reports

Bug Description Issue
1931407 Add DSD processing of .dsf files to sox in Fedora 40
1978781 CVE-2021-33844 sox: divide by zero crash in wav.c [epel-8]
1978783 CVE-2021-23172 sox: heap overflow in hcom.c [epel-8]
1978788 CVE-2021-23159 sox: heap based overflow in formats_i.c [epel-8]
1983088 CVE-2021-23210 sox: divide by zero in voc.c [epel-8]
1993269 CVE-2021-3643 sox: buffer overflow read vulnerability [epel-8]
2094686 CVE-2021-40426 sox: heap-based buffer overflow vulnerability exists in the sphere.c start_read() function [epel-8]
2094698 CVE-2022-31650 sox: a floating-point exception in lsx_aiffstartwrite in aiff.c in libsox.a [epel-8]
2094701 CVE-2022-31651 sox: an assertion failure in rate_init in rate.c in libsox.a [epel-8]
2212281 sox: floating point exception in src/aiff.c:622:58 [epel-all]
2212285 sox: heap-buffer-overflow in src/hcom.c [epel-all]
2212287 sox: floating point exception in src/voc.c [epel-all]
2212294 sox: heap-buffer-overflow in src/formats_i.c [epel-all]
2367790 sox cannot open ladspa tap_deesser plugin after upgrading from fc41 to fc42
2383076 sox: STI tests will no longer be run in F43
152759 CAN-2004-0557 sox buffer overflows
636 play file.au doesn't work
959 /usr/bin/play should use "$@"
617334 aiff read bug when mark chunk present
880260 sox mcompand: bad clipping due to overflow of band summing

Generated by makehtml.sh on Sat Feb 21 11:36:46 AM CET 2026