Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2014-9620

Disclosure Date: January 21, 2015 (last updated October 05, 2023)
The ELF parser in file 5.08 through 5.21 allows remote attackers to cause a denial of service via a large number of notes.
0
Attacker Value
Unknown

CVE-2014-3587

Disclosure Date: August 23, 2014 (last updated October 05, 2023)
Integer overflow in the cdf_read_property_info function in cdf.c in file through 5.19, as used in the Fileinfo component in PHP before 5.4.32 and 5.5.x before 5.5.16, allows remote attackers to cause a denial of service (application crash) via a crafted CDF file. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-1571.
0
Attacker Value
Unknown

CVE-2014-3478

Disclosure Date: July 09, 2014 (last updated October 05, 2023)
Buffer overflow in the mconvert function in softmagic.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, allows remote attackers to cause a denial of service (application crash) via a crafted Pascal string in a FILE_PSTRING conversion.
0
Attacker Value
Unknown

CVE-2014-3538

Disclosure Date: July 03, 2014 (last updated October 05, 2023)
file before 5.19 does not properly restrict the amount of data read during a regex search, which allows remote attackers to cause a denial of service (CPU consumption) via a crafted file that triggers backtracking during processing of an awk rule. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-7345.
0