4.3
CVSSv2

CVE-2020-23903

Published: 10/11/2021 Updated: 07/11/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

A Divide by Zero vulnerability in the function static int read_samples of Speex v1.2 allows malicious users to cause a denial of service (DoS) via a crafted WAV file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

xiph speex 1.2

fedoraproject fedora 34

fedoraproject fedora 35

Vendor Advisories

Synopsis Low: speex security update Type/Severity Security Advisory: Low Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for speex is now available for Red Hat Enterprise Linux 9Red Hat Product Security has rated this update as having a security impact ...
A divide by zero vulnerability in the function static int read_samples of Speex v12 allows attackers to cause a denial of service (DoS) via a crafted WAV file ...