CVE-2014-8117
17.12.2014, 19:59
softmagic.c in file before 5.21 does not properly limit recursion, which allows remote attackers to cause a denial of service (CPU consumption or crash) via unspecified vectors.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| file_project | file | 𝑥 ≤ 5.20 |
| freebsd | freebsd | * |
| mageia | mageia | 4.0 |
| canonical | ubuntu_linux | 10.04 |
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 14.04 |
| canonical | ubuntu_linux | 14.10 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||
|---|---|---|---|---|---|---|---|---|---|
| file |
| ||||||||
| php5 |
|
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| file |
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| file-devel |
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| file-magic |
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| libmagic1 |
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| libmagic1-32bit |
|
Red Hat Enterprise Linux Releases
Red Hat Product | |||||
|---|---|---|---|---|---|
| file |
| ||||
| file-devel |
| ||||
| file-libs |
| ||||
| file-static |
| ||||
| python-magic |
|
Common Weakness Enumeration
References