CVE-2019-8906
published 2019-02-18CVE-2019-8906: do_core_note in readelf.c in libmagic.a in file 5.35 has an out-of-bounds read because memcpy is misused.
PriorityP415medium4.4CVSS 3.1
AVLACLPRLUINSUCLINAL
EPSS
0.49%
39.1th percentile
do_core_note in readelf.c in libmagic.a in file 5.35 has an out-of-bounds read because memcpy is misused.
Affected
19 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios | — | — |
| apple | iphone_os | < 12.2 | 12.2 |
| apple | mac_os_x | < 10.14.4 | 10.14.4 |
| apple | macos_mojave_10.14.4_security_update_2019-002_high_sierra_security_update_2019-0 | — | — |
| apple | tvos | < 12.2 | 12.2 |
| apple | tvos | — | — |
| apple | watchos | < 5.2 | 5.2 |
| apple | watchos | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | file | < file 1:5.35-3 (bookworm) | file 1:5.35-3 (bookworm) |
| file_project | file | — | — |
| file_project | file | >= 0 < 1:5.35-3 | 1:5.35-3 |
| file_project | file | >= 0 < 1:5.35-3 | 1:5.35-3 |
| file_project | file | >= 0 < 1:5.35-3 | 1:5.35-3 |
| file_project | file | >= 0 < 1:5.35-3 | 1:5.35-3 |
| opensuse | leap | — | — |
| opensuse | leap | — | — |
CVSS provenance
nvdv3.14.4MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L
nvdv2.03.6LOWAV:L/AC:L/Au:N/C:P/I:N/A:P
osv4.4MEDIUM
vendor_debian4.4MEDIUM
vendor_redhat4.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2019-8906: watchOS 5.2
vendor_apple·2019-03-27·CVSS 4.4
CVE-2019-8906 [MEDIUM] CVE-2019-8906: watchOS 5.2
Apple Security Update: About the security content of watchOS 5.2
Product: watchOS
Version: 5.2
CVE: CVE-2019-8906
Component: CoreCrypto
Impact: A malicious application may be able to elevate privileges
Description: A buffer overflow was addressed with improved bounds checking.
Apple
CVE-2019-8906: iOS 12.2
vendor_apple·2019-03-25·CVSS 4.4
CVE-2019-8906 [MEDIUM] CVE-2019-8906: iOS 12.2
Apple Security Update: About the security content of iOS 12.2
Product: iOS
Version: 12.2
CVE: CVE-2019-8906
Component: Feedback Assistant
Impact: A malicious application may be able to overwrite arbitrary files
Description: This issue was addressed with improved checks.
Apple
CVE-2019-8906: tvOS 12.2
vendor_apple·2019-03-25·CVSS 4.4
CVE-2019-8906 [MEDIUM] CVE-2019-8906: tvOS 12.2
Apple Security Update: About the security content of tvOS 12.2
Product: tvOS
Version: 12.2
CVE: CVE-2019-8906
Component: CoreCrypto
Impact: A malicious application may be able to elevate privileges
Description: A buffer overflow was addressed with improved bounds checking.
Apple
CVE-2019-8906: macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra
vendor_apple·2019-03-25·CVSS 4.4
CVE-2019-8906 [MEDIUM] CVE-2019-8906: macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra
Apple Security Update: About the security content of macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra
Product: macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra
CVE: CVE-2019-8906
Component: Feedback Assistant
Impact: A malicious application may be able to overwrite arbitrary files
Description: This issue was addressed with improved checks.
Ubuntu
file vulnerabilities
vendor_ubuntu·2019-03-18
CVE-2019-8904 file vulnerabilities
Title: file vulnerabilities
Summary: Several security issues were fixed in file.
It was discovered that file incorrectly handled certain malformed ELF
files. An attacker could use this issue to cause a denial of service, or
possibly execute arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
file: out-of-bounds read in do_core_note in readelf.c
vendor_redhat·2019-01-03·CVSS 4.4
CVE-2019-8906 [MEDIUM] CWE-125 file: out-of-bounds read in do_core_note in readelf.c
file: out-of-bounds read in do_core_note in readelf.c
do_core_note in readelf.c in libmagic.a in file 5.35 has an out-of-bounds read because memcpy is misused.
A vulnerability has been identified in the File Project, specifically in the do_core_note function within readelf.c of libmagic.a where, an out-of-bounds read, can be exploited by a local attacker using a specially crafted file which could result in a denial of service or leakage of sensitive information.
Statement: This vulnerability was rated as LOW severity because its exploitation requires a local attacker to use a specially crafted file and it results in temporary application crashes or exposure of limited information, it does not allow remote code execution or system compromise.
Package: file (Red Hat Enterprise Linux 5) -
Debian
CVE-2019-8906: file - do_core_note in readelf.c in libmagic.a in file 5.35 has an out-of-bounds read b...
vendor_debian·2019·CVSS 4.4
CVE-2019-8906 [MEDIUM] CVE-2019-8906: file - do_core_note in readelf.c in libmagic.a in file 5.35 has an out-of-bounds read b...
do_core_note in readelf.c in libmagic.a in file 5.35 has an out-of-bounds read because memcpy is misused.
Scope: local
bookworm: resolved (fixed in 1:5.35-3)
bullseye: resolved (fixed in 1:5.35-3)
forky: resolved (fixed in 1:5.35-3)
sid: resolved (fixed in 1:5.35-3)
trixie: resolved (fixed in 1:5.35-3)
GHSA
GHSA-gc52-2h3f-7mvf: do_core_note in readelf
ghsa_unreviewed·2022-05-13
CVE-2019-8906 [MEDIUM] CWE-125 GHSA-gc52-2h3f-7mvf: do_core_note in readelf
do_core_note in readelf.c in libmagic.a in file 5.35 has an out-of-bounds read because memcpy is misused.
OSV
CVE-2019-8906: do_core_note in readelf
osv·2019-02-18·CVSS 4.4
CVE-2019-8906 [MEDIUM] CVE-2019-8906: do_core_note in readelf
do_core_note in readelf.c in libmagic.a in file 5.35 has an out-of-bounds read because memcpy is misused.
No detection rules found.
Bugzilla
CVE-2019-8906 file: out-of-bounds read in do_core_note in readelf.c
bugzilla·2019-02-20·CVSS 4.4
CVE-2019-8906 [MEDIUM] CVE-2019-8906 file: out-of-bounds read in do_core_note in readelf.c
CVE-2019-8906 file: out-of-bounds read in do_core_note in readelf.c
do_core_note in readelf.c in libmagic in file 5.35 has an out-of-bounds read because memcpy is misused.
Upstream commit:
https://github.com/file/file/commit/2858eaf99f6cc5aae129bcbf1e24ad160240185f
Discussion:
Created file tracking bugs for this issue:
Affects: fedora-all [bug 1679176]
---
References:
https://bugs.astron.com/view.php?id=64
Bugzilla
CVE-2019-8906 file: out-of-bounds read in do_core_note in readelf.c [fedora-all]
bugzilla·2019-02-20·CVSS 4.4
CVE-2019-8906 [MEDIUM] CVE-2019-8906 file: out-of-bounds read in do_core_note in readelf.c [fedora-all]
CVE-2019-8906 file: out-of-bounds read in do_core_note in readelf.c [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versi
http://lists.opensuse.org/opensuse-security-announce/2019-03/msg00027.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-04/msg00053.htmlhttps://bugs.astron.com/view.php?id=64https://github.com/file/file/commit/2858eaf99f6cc5aae129bcbf1e24ad160240185fhttps://support.apple.com/kb/HT209599https://support.apple.com/kb/HT209600https://support.apple.com/kb/HT209601https://support.apple.com/kb/HT209602https://usn.ubuntu.com/3911-1/http://lists.opensuse.org/opensuse-security-announce/2019-03/msg00027.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-04/msg00053.htmlhttps://bugs.astron.com/view.php?id=64https://github.com/file/file/commit/2858eaf99f6cc5aae129bcbf1e24ad160240185fhttps://support.apple.com/kb/HT209599https://support.apple.com/kb/HT209600https://support.apple.com/kb/HT209601https://support.apple.com/kb/HT209602https://usn.ubuntu.com/3911-1/
2019-02-18
Published