Related Vulnerabilities: CVE-2020-23903  

A divide by zero vulnerability in the function static int read_samples of Speex v1.2 allows attackers to cause a denial of service (DoS) via a crafted WAV file.

Severity Low

Remote Yes

Type Denial of service

Description

A divide by zero vulnerability in the function static int read_samples of Speex v1.2 allows attackers to cause a denial of service (DoS) via a crafted WAV file.

AVG-2544 speex 1.2.0-3 Medium Vulnerable

https://github.com/xiph/speex/issues/13
https://gitlab.xiph.org/xiph/speex/-/merge_requests/1
https://gitlab.xiph.org/xiph/speex/-/commit/870ff845b32f314aec0036641ffe18aba4916887