cbcvebase.
CVE-2012-1571
published 2012-07-17

CVE-2012-1571: file before 5.11 and libmagic allow remote attackers to cause a denial of service (crash) via a crafted Composite Document File (CDF) file that triggers (1) an…

medium6.5CVSS 3.1
AVNACLPRNUIRSUCNINAH
file before 5.11 and libmagic allow remote attackers to cause a denial of service (crash) via a crafted Composite Document File (CDF) file that triggers (1) an out-of-bounds read or (2) an invalid pointer dereference.

Affected

79 ranges· showing 25
VendorProductVersion rangeFixed in
christos_zoulasfile<= 5.10
christos_zoulasfile<= 5.19
christos_zoulasfile
christos_zoulasfile
christos_zoulasfile
christos_zoulasfile
christos_zoulasfile
christos_zoulasfile
christos_zoulasfile
christos_zoulasfile
christos_zoulasfile
christos_zoulasfile
christos_zoulasfile
christos_zoulasfile
christos_zoulasfile
christos_zoulasfile
christos_zoulasfile
christos_zoulasfile
christos_zoulasfile
christos_zoulasfile
christos_zoulasfile
debianfile< file 5.11-1 (bookworm)file 5.11-1 (bookworm)
debianfile< file 1:5.19-2 (bookworm)file 1:5.19-2 (bookworm)
file_projectfile>= 0 < 5.11-15.11-1
file_projectfile>= 0 < 1:5.19-21:5.19-2

CVSS provenance

nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvd4.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv6.5MEDIUM