Записи file
4 опубликованных записей вендора file.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 100 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
4 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
43В плане | CVE-2004-1304Proof of concept | Stack-based buffer overflow in the ELF header parsing code in file before 4.12 allows attackers to execute arbitrary code via a crafted ELF file · file | Критическая10,0 | — | 11,4 % | 10 янв. 2005 г. |
41В плане | CVE-2007-1536Proof of concept | Integer underflow in the file_printf function in the "file" program before 4.20 allows user-assisted attackers to execute arbitrary code viafile · file · CWE-189 | Критическая9,3 | — | 13,5 % | 20 мар. 2007 г. |
21Наблюдать | CVE-2007-2799Эксплойта нет | Integer overflow in the "file" program 4.20, when running on 32-bit systems, as used in products including The Sleuth Kit, might allow user-file · file · CWE-189 | Средняя5,1 | — | 2,7 % | 23 мая 2007 г. |
19Наблюдать | CVE-2003-0102Proof of concept | Buffer overflow in tryelf() in readelf.c of the file command allows attackers to execute arbitrary code as the user running file, possibly vfile · file | Средняя4,6 | — | 2,0 % | 18 мар. 2003 г. |
- CVE-2004-130443В плане
Stack-based buffer overflow in the ELF header parsing code in file before 4.12 allows attackers to execute arbitrary code via a crafted ELF
КритическаяCVSS 10,0Proof of conceptEPSS 11 %file · file10 янв. 2005 г.
- CVE-2007-153641В плане
Integer underflow in the file_printf function in the "file" program before 4.20 allows user-assisted attackers to execute arbitrary code via
КритическаяCVSS 9,3Proof of conceptEPSS 13 %file · file20 мар. 2007 г.
- CVE-2007-279921Наблюдать
Integer overflow in the "file" program 4.20, when running on 32-bit systems, as used in products including The Sleuth Kit, might allow user-
СредняяCVSS 5,1Эксплойта нетEPSS 3 %file · file23 мая 2007 г.
- CVE-2003-010219Наблюдать
Buffer overflow in tryelf() in readelf.c of the file command allows attackers to execute arbitrary code as the user running file, possibly v
СредняяCVSS 4,6Proof of conceptEPSS 2 %file · file18 мар. 2003 г.