Описание
File before 5.43 has an stack-based buffer over-read in file_copystr in funcs.c. NOTE: "File" is the name of an Open Source project.
A flaw was found in file, a program used to identify a particular file according to the type of data contained by the file. This issue occurs when processing a specially crafted file, causing a stack-based buffer over-read, resulting in an application crash.
Меры по смягчению последствий
Do not process untrusted files with the file program.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 6 | file | Out of support scope | ||
Red Hat Enterprise Linux 7 | file | Out of support scope | ||
Red Hat Enterprise Linux 8 | file | Not affected | ||
Red Hat Enterprise Linux 9 | file | Fixed | RHSA-2024:2512 | 30.04.2024 |
Red Hat Enterprise Linux 9 | file | Fixed | RHSA-2024:2512 | 30.04.2024 |
Показывать по
Дополнительная информация
Статус:
EPSS
5.5 Medium
CVSS3
Связанные уязвимости
File before 5.43 has an stack-based buffer over-read in file_copystr in funcs.c. NOTE: "File" is the name of an Open Source project.
File before 5.43 has an stack-based buffer over-read in file_copystr in funcs.c. NOTE: "File" is the name of an Open Source project.
File before 5.43 has an stack-based buffer over-read in file_copystr i ...
EPSS
5.5 Medium
CVSS3