vulnerability

FreeBSD: VID-381deebb-f5c9-11e9-9c4f-74d435e60b7c: file -- Heap buffer overflow possible

Severity
9
CVSS
(AV:N/AC:M/Au:N/C:C/I:C/A:C)
Published
Nov 2, 2019
Added
Nov 2, 2019
Modified
Dec 10, 2025

Description

mitre reports cdf_read_property_info in cdf.c in file through 5.37 does not restrict the number of CDF_VECTOR elements, which allows a heap-based buffer overflow (4-byte out-of-bounds write).

Solution

freebsd-upgrade-package-file

References

Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.