- EPSS 1.29%
- Veröffentlicht 21.01.2015 18:59:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ELF parser in file 5.16 through 5.21 allows remote attackers to cause a denial of service via a long string.
- EPSS 2.99%
- Veröffentlicht 21.01.2015 18:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ELF parser in file 5.08 through 5.21 allows remote attackers to cause a denial of service via a large number of notes.
- EPSS 14.62%
- Veröffentlicht 17.12.2014 19:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
softmagic.c in file before 5.21 does not properly limit recursion, which allows remote attackers to cause a denial of service (CPU consumption or crash) via unspecified vectors.
- EPSS 14.09%
- Veröffentlicht 17.12.2014 19:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ELF parser (readelf.c) in file before 5.21 allows remote attackers to cause a denial of service (CPU consumption or crash) via a large number of (1) program or (2) section headers or (3) invalid capabilities.
CVE-2014-3487
- EPSS 18.5%
- Veröffentlicht 09.07.2014 11:07:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
The cdf_read_property_info function in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, does not properly validate a stream offset, which allows remote attackers to cause a denial of service (applicati...
CVE-2014-3480
- EPSS 11.28%
- Veröffentlicht 09.07.2014 11:07:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
The cdf_count_chain function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, does not properly validate sector-count data, which allows remote attackers to cause a denial of service (appli...
CVE-2014-3479
- EPSS 11.28%
- Veröffentlicht 09.07.2014 11:07:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
The cdf_check_stream_offset function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, relies on incorrect sector-size data, which allows remote attackers to cause a denial of service (appli...
CVE-2014-2270
- EPSS 43.46%
- Veröffentlicht 14.03.2014 15:55:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
softmagic.c in file before 5.17 and libmagic allows context-dependent attackers to cause a denial of service (out-of-bounds memory access and crash) via crafted offsets in the softmagic of a PE executable.