cbcvebase.
CVE-2014-2270
published 2014-03-14

CVE-2014-2270: softmagic.c in file before 5.17 and libmagic allows context-dependent attackers to cause a denial of service (out-of-bounds memory access and crash) via…

medium4.3CVSS 3.1
AVNACMAuNCNINAP
softmagic.c in file before 5.17 and libmagic allows context-dependent attackers to cause a denial of service (out-of-bounds memory access and crash) via crafted offsets in the softmagic of a PE executable.

Affected

18 ranges
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debiandebian_linux
debiandebian_linux
debiandebian_linux
debianfile< file 1:5.17-1 (bookworm)file 1:5.17-1 (bookworm)
file_projectfile< 5.175.17
file_projectfile>= 0 < 1:5.17-11:5.17-1
file_projectfile>= 0 < 1:5.17-11:5.17-1
file_projectfile>= 0 < 1:5.17-11:5.17-1
file_projectfile>= 0 < 1:5.17-11:5.17-1
opensuseopensuse
opensuseopensuse
opensuseopensuse
phpphp< 5.4.265.4.26
phpphp>= 5.5.0 < 5.5.105.5.10

CVSS provenance

nvd4.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv4.3MEDIUM