cbcvebase.
CVE-2014-1943
published 2014-02-18

CVE-2014-1943: Fine Free file before 5.17 allows context-dependent attackers to cause a denial of service (infinite recursion, CPU consumption, and crash) via a crafted…

medium5CVSS 3.1
AVNACLAuNCNINAP
Fine Free file before 5.17 allows context-dependent attackers to cause a denial of service (infinite recursion, CPU consumption, and crash) via a crafted indirect offset value in the magic of a file.

Affected

14 ranges
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debiandebian_linux
debiandebian_linux
debianfile< file 1:5.17-0.1 (bookworm)file 1:5.17-0.1 (bookworm)
file_projectfile>= 0 < 1:5.17-0.11:5.17-0.1
file_projectfile>= 0 < 1:5.17-0.11:5.17-0.1
file_projectfile>= 0 < 1:5.17-0.11:5.17-0.1
file_projectfile>= 0 < 1:5.17-0.11:5.17-0.1
fine_free_file_projectfine_free_file< 5.175.17
phpphp>= 5.4.0 < 5.4.265.4.26
phpphp>= 5.5.0 < 5.5.105.5.10

CVSS provenance

nvd5.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM