CVE-2014-1943
published 2014-02-18CVE-2014-1943: Fine Free file before 5.17 allows context-dependent attackers to cause a denial of service (infinite recursion, CPU consumption, and crash) via a crafted…
PriorityP423medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
5.07%
91.4th percentile
Fine Free file before 5.17 allows context-dependent attackers to cause a denial of service (infinite recursion, CPU consumption, and crash) via a crafted indirect offset value in the magic of a file.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | file | < file 1:5.17-0.1 (bookworm) | file 1:5.17-0.1 (bookworm) |
| file_project | file | >= 0 < 1:5.17-0.1 | 1:5.17-0.1 |
| file_project | file | >= 0 < 1:5.17-0.1 | 1:5.17-0.1 |
| file_project | file | >= 0 < 1:5.17-0.1 | 1:5.17-0.1 |
| file_project | file | >= 0 < 1:5.17-0.1 | 1:5.17-0.1 |
| fine_free_file_project | fine_free_file | < 5.17 | 5.17 |
| php | php | >= 5.4.0 < 5.4.26 | 5.4.26 |
| php | php | >= 5.5.0 < 5.5.10 | 5.5.10 |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM
vendor_ubuntu6.8MEDIUM
vendor_debian5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
BSD
FreeBSD-SA-14:16.file: Multiple vulnerabilities in file(1) and libmagic(3)
bsd_advisories·2014-06-24·CVSS 6.5
CVE-2012-1571 [MEDIUM] FreeBSD-SA-14:16.file: Multiple vulnerabilities in file(1) and libmagic(3)
FreeBSD-SA-14:16.file Security Advisory
The FreeBSD Project
Topic: Multiple vulnerabilities in file(1) and libmagic(3)
Category: contrib
Module: file
Announced: 2014-06-24
Affects: All supported versions of FreeBSD.
Corrected: 2014-06-24 19:04:55 UTC (stable/10, 10.0-STABLE)
2014-06-24 19:05:08 UTC (releng/10.0, 10.0-RELEASE-p6)
2014-06-24 19:04:55 UTC (stable/9, 9.3-PRERELEASE)
2014-06-24 19:05:19 UTC (releng/9.3, 9.3-RC2)
2014-06-24 19:05:36 UTC (releng/9.2, 9.2-RELEASE-p9)
2014-06-24 19:05:36 UTC (releng/9.1, 9.1-RELEASE-p16)
2014-06-24 19:04:55 UTC (stable/8, 8.4-STABLE)
2014-06-24 19:05:47 UTC (releng/8.4, 8.4-RELEASE-p13)
CVE Name: CVE-2012-1571, CVE-2013-7345, CVE-2014-1943, CVE-2014-2270
For general information regarding FreeBSD Security Advisories,
including descriptions of the
Ubuntu
PHP vulnerabilities
vendor_ubuntu·2014-03-03·CVSS 6.8
CVE-2013-7226 [MEDIUM] PHP vulnerabilities
Title: PHP vulnerabilities
Summary: Several security issues were fixed in PHP.
Bernd Melchers discovered that PHP's embedded libmagic library incorrectly
handled indirect offset values. An attacker could use this issue to cause
PHP to consume resources or crash, resulting in a denial of service.
(CVE-2014-1943)
It was discovered that PHP incorrectly handled certain values when using
the imagecrop function. An attacker could possibly use this issue to cause
PHP to crash, resulting in a denial of service, obtain sensitive
information, or possibly execute arbitrary code. This issue only affected
Ubuntu 13.10. (CVE-2013-7226, CVE-2013-7327, CVE-2013-7328, CVE-2014-2020)
Instructions: In general, a standard system update will make all the necessary changes.
Ubuntu
file vulnerabilities
vendor_ubuntu·2014-02-26·CVSS 6.5
CVE-2012-1571 [MEDIUM] file vulnerabilities
Title: file vulnerabilities
Summary: File could be made to crash if it processed a specially crafted file.
It was discovered that file incorrectly handled Composite Document files.
An attacker could use this issue to cause file to crash, resulting in a
denial of service. This issue only affected Ubuntu 10.04 LTS and Ubuntu
12.04 LTS. (CVE-2012-1571)
Bernd Melchers discovered that file incorrectly handled indirect offset
values. An attacker could use this issue to cause file to consume resources
or crash, resulting in a denial of service. (CVE-2014-1943)
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
file: unrestricted recursion in handling of indirect type rules
vendor_redhat·2014-02-10·CVSS 5.0
CVE-2014-1943 [MEDIUM] CWE-835 file: unrestricted recursion in handling of indirect type rules
file: unrestricted recursion in handling of indirect type rules
Fine Free file before 5.17 allows context-dependent attackers to cause a denial of service (infinite recursion, CPU consumption, and crash) via a crafted indirect offset value in the magic of a file.
A denial of service flaw was found in the way the File Information (fileinfo) extension handled indirect rules. A remote attacker could use this flaw to cause a PHP application using fileinfo to crash or consume an excessive amount of CPU.
Statement: This issue did not affect the php packages as shipped with Red Hat Enterprise Linux 5. This issue did not affect the php packages as shipped with Red Hat Enterprise Linux 7.
Package: cdrtools (Red Hat Enterprise Linux 5) - Not affected
Package: file (Red Hat Enterprise Linux 5) -
Debian
CVE-2014-1943: file - Fine Free file before 5.17 allows context-dependent attackers to cause a denial ...
vendor_debian·2014·CVSS 5.0
CVE-2014-1943 [MEDIUM] CVE-2014-1943: file - Fine Free file before 5.17 allows context-dependent attackers to cause a denial ...
Fine Free file before 5.17 allows context-dependent attackers to cause a denial of service (infinite recursion, CPU consumption, and crash) via a crafted indirect offset value in the magic of a file.
Scope: local
bookworm: resolved (fixed in 1:5.17-0.1)
bullseye: resolved (fixed in 1:5.17-0.1)
forky: resolved (fixed in 1:5.17-0.1)
sid: resolved (fixed in 1:5.17-0.1)
trixie: resolved (fixed in 1:5.17-0.1)
GHSA
GHSA-2r4w-c5qm-vpx8: Fine Free file before 5
ghsa_unreviewed·2022-05-17
CVE-2014-1943 [MEDIUM] CWE-755 GHSA-2r4w-c5qm-vpx8: Fine Free file before 5
Fine Free file before 5.17 allows context-dependent attackers to cause a denial of service (infinite recursion, CPU consumption, and crash) via a crafted indirect offset value in the magic of a file.
OSV
CVE-2014-1943: Fine Free file before 5
osv·2014-02-18·CVSS 5.0
CVE-2014-1943 [MEDIUM] CVE-2014-1943: Fine Free file before 5
Fine Free file before 5.17 allows context-dependent attackers to cause a denial of service (infinite recursion, CPU consumption, and crash) via a crafted indirect offset value in the magic of a file.
No detection rules found.
Bugzilla
CVE-2014-1943 file: unrestricted recursion in handling of indirect type rules
bugzilla·2014-02-17·CVSS 5.0
CVE-2014-1943 [MEDIUM] CVE-2014-1943 file: unrestricted recursion in handling of indirect type rules
CVE-2014-1943 file: unrestricted recursion in handling of indirect type rules
A flaw was found in the way the file utility determined the type of a file. A malicious input file could cause the file utility to use 100% CPU, or trigger infinite recursion, causing the file utility to crash or, potentially, execute arbitrary code.
Upstream fixes:
https://github.com/file/file/commit/3c081560c23f20b2985c285338b52c7aae9fdb0f
https://github.com/file/file/commit/cc9e74dfeca5265ad725acc926ef0b8d2a18ee70
https://github.com/file/file/commit/4afb9b168906f117e32a11367761cd50fe9d4abe
Original report:
http://mx.gw.com/pipermail/file/2014/001327.html
Discussion:
It was noted that this issue was introduced in November 2008:
http://mx.gw.com/pipermail/file/2014/001330.html
The version of file as shipp
Bugzilla
CVE-2014-1943 file: infinite recursion [fedora-all]
bugzilla·2014-02-17·CVSS 5.0
CVE-2014-1943 [MEDIUM] CVE-2014-1943 file: infinite recursion [fedora-all]
CVE-2014-1943 file: infinite recursion [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Please note: this issue affects multiple supported ve
http://lists.opensuse.org/opensuse-updates/2014-03/msg00034.htmlhttp://lists.opensuse.org/opensuse-updates/2014-03/msg00037.htmlhttp://mx.gw.com/pipermail/file/2014/001327.htmlhttp://mx.gw.com/pipermail/file/2014/001330.htmlhttp://mx.gw.com/pipermail/file/2014/001334.htmlhttp://mx.gw.com/pipermail/file/2014/001337.htmlhttp://rhn.redhat.com/errata/RHSA-2014-1765.htmlhttp://support.apple.com/kb/HT6443http://www.debian.org/security/2014/dsa-2861http://www.debian.org/security/2014/dsa-2868http://www.php.net/ChangeLog-5.phphttp://www.ubuntu.com/usn/USN-2123-1http://www.ubuntu.com/usn/USN-2126-1https://github.com/glensc/file/blob/FILE5_17/ChangeLoghttp://lists.opensuse.org/opensuse-updates/2014-03/msg00034.htmlhttp://lists.opensuse.org/opensuse-updates/2014-03/msg00037.htmlhttp://mx.gw.com/pipermail/file/2014/001327.htmlhttp://mx.gw.com/pipermail/file/2014/001330.htmlhttp://mx.gw.com/pipermail/file/2014/001334.htmlhttp://mx.gw.com/pipermail/file/2014/001337.htmlhttp://rhn.redhat.com/errata/RHSA-2014-1765.htmlhttp://support.apple.com/kb/HT6443http://www.debian.org/security/2014/dsa-2861http://www.debian.org/security/2014/dsa-2868http://www.php.net/ChangeLog-5.phphttp://www.ubuntu.com/usn/USN-2123-1http://www.ubuntu.com/usn/USN-2126-1https://github.com/glensc/file/blob/FILE5_17/ChangeLog
2014-02-18
Published