File Project

File

18 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.29%
  • Published 21.01.2015 18:59:07
  • Last modified 12.04.2025 10:46:40

The ELF parser in file 5.16 through 5.21 allows remote attackers to cause a denial of service via a long string.

  • EPSS 2.99%
  • Published 21.01.2015 18:59:05
  • Last modified 12.04.2025 10:46:40

The ELF parser in file 5.08 through 5.21 allows remote attackers to cause a denial of service via a large number of notes.

  • EPSS 14.62%
  • Published 17.12.2014 19:59:05
  • Last modified 12.04.2025 10:46:40

softmagic.c in file before 5.21 does not properly limit recursion, which allows remote attackers to cause a denial of service (CPU consumption or crash) via unspecified vectors.

  • EPSS 14.09%
  • Published 17.12.2014 19:59:02
  • Last modified 12.04.2025 10:46:40

The ELF parser (readelf.c) in file before 5.21 allows remote attackers to cause a denial of service (CPU consumption or crash) via a large number of (1) program or (2) section headers or (3) invalid capabilities.

  • EPSS 18.5%
  • Published 09.07.2014 11:07:01
  • Last modified 12.04.2025 10:46:40

The cdf_read_property_info function in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, does not properly validate a stream offset, which allows remote attackers to cause a denial of service (applicati...

  • EPSS 11.28%
  • Published 09.07.2014 11:07:01
  • Last modified 12.04.2025 10:46:40

The cdf_count_chain function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, does not properly validate sector-count data, which allows remote attackers to cause a denial of service (appli...

  • EPSS 11.28%
  • Published 09.07.2014 11:07:01
  • Last modified 12.04.2025 10:46:40

The cdf_check_stream_offset function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, relies on incorrect sector-size data, which allows remote attackers to cause a denial of service (appli...

  • EPSS 43.46%
  • Published 14.03.2014 15:55:05
  • Last modified 12.04.2025 10:46:40

softmagic.c in file before 5.17 and libmagic allows context-dependent attackers to cause a denial of service (out-of-bounds memory access and crash) via crafted offsets in the softmagic of a PE executable.