Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-7345

Опубликовано: 24 мар. 2014
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 5

Описание

The BEGIN regular expression in the awk script detector in magic/Magdir/commands in file before 5.15 uses multiple wildcards with unlimited repetitions, which allows context-dependent attackers to cause a denial of service (CPU consumption) via a crafted ASCII file that triggers a large amount of backtracking, as demonstrated via a file with many newline characters.

РелизСтатусПримечание
devel

not-affected

1:5.18-1ubuntu1
esm-infra-legacy/trusty

not-affected

1:5.14-2ubuntu3.1
lucid

released

5.03-5ubuntu1.3
precise

released

5.09-2ubuntu0.4
quantal

ignored

end of life
saucy

released

5.11-2ubuntu4.3
trusty

released

1:5.14-2ubuntu3.1
trusty/esm

not-affected

1:5.14-2ubuntu3.1
upstream

needs-triage

Показывать по

EPSS

Процентиль: 80%
0.01525
Низкий

5 Medium

CVSS2

Связанные уязвимости

redhat
больше 13 лет назад

The BEGIN regular expression in the awk script detector in magic/Magdir/commands in file before 5.15 uses multiple wildcards with unlimited repetitions, which allows context-dependent attackers to cause a denial of service (CPU consumption) via a crafted ASCII file that triggers a large amount of backtracking, as demonstrated via a file with many newline characters.

nvd
больше 11 лет назад

The BEGIN regular expression in the awk script detector in magic/Magdir/commands in file before 5.15 uses multiple wildcards with unlimited repetitions, which allows context-dependent attackers to cause a denial of service (CPU consumption) via a crafted ASCII file that triggers a large amount of backtracking, as demonstrated via a file with many newline characters.

debian
больше 11 лет назад

The BEGIN regular expression in the awk script detector in magic/Magdi ...

github
около 3 лет назад

The BEGIN regular expression in the awk script detector in magic/Magdir/commands in file before 5.15 uses multiple wildcards with unlimited repetitions, which allows context-dependent attackers to cause a denial of service (CPU consumption) via a crafted ASCII file that triggers a large amount of backtracking, as demonstrated via a file with many newline characters.

fstec
почти 11 лет назад

Уязвимость операционной системы Gentoo Linux, позволяющая удаленному злоумышленнику нарушить доступность защищаемой информации

EPSS

Процентиль: 80%
0.01525
Низкий

5 Medium

CVSS2

Уязвимость CVE-2013-7345