MNBSD-2014-19: Denial of service in file(1) and libmagic

Severity: Unknown

Affected Package: file

Summary: Denial of service in file(1) and libmagic

Description

Multiple vulnerabilities in file(1) and libmagic(3) could allow an attacker to cause a denial of service in any program that uses libmagic, for example via a crafted ELF or other input processed by the magic parser. This affects services that identify untrusted file content.

Affected Versions

file

Recommendations

No specific recommendations provided.

References

Additional Information

Aliases: CVE-2014-3710, CVE-2014-8116, CVE-2014-8117

Published: December 11, 2014
Last Modified: December 11, 2014