The ELF parser in file 5.08 through 5.21 allows remote attackers to cause a denial of service via a large number of notes.
CVSS Details
- CVSS 3.1 Base Score: 5.3
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade file | Aug 30, 2017 | Jan 21, 2015 |
| Debian | — | Upgrade file | Jul 30, 2024 | Jan 21, 2015 |
| Gentoo Linux | — | Upgrade sys-apps/file. | Oct 30, 2017 | Jan 21, 2015 |
| Huawei Euleros 2_0_sp2 | — | Upgrade python-magicUpgrade fileUpgrade file-libs | Dec 4, 2019 | Jan 21, 2015 |
| Huawei Euleros 2_0_sp3 | — | Upgrade fileUpgrade file-libsUpgrade python-magic | Dec 18, 2019 | Jan 21, 2015 |
| Huawei Euleros 2_0_sp5 | — | Upgrade fileUpgrade python-magicUpgrade file-libs | Feb 3, 2021 | Jan 21, 2015 |
| Oracle_linux | — | Upgrade file-libsUpgrade fileUpgrade file-develUpgrade file-staticUpgrade python-magic | May 12, 2016 | Jan 21, 2015 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Jan 3, 2015 |
| Suse | — | Upgrade file-develUpgrade libmagic1Upgrade file-magicUpgrade python-magicUpgrade libmagic1-32bitUpgrade file | Nov 22, 2017 | Jan 21, 2015 |
| Ubuntu | — | Upgrade fileUpgrade libmagic1 | Jun 27, 2018 | Jan 21, 2015 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub