file project kayıtları
file project üreticisine ait 18 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-125 Out-of-bounds Read5
- CWE-399 Resource Management Errors4
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer3
- CWE-20 Improper Input Validation3
- CWE-787 Out-of-bounds Write2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
18 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
36İzleyin | CVE-2019-8907İstismar yok | do_core_note in readelf.c in libmagic.a in file 5.35 allows remote attackers to cause a denial of service (stack corruption and application file project · file · CWE-787 | Yüksek8,8 | — | %3,5 | 18 Şub 2019 |
36İzleyin | CVE-2019-8904İstismar yok | do_bid_note in readelf.c in libmagic.a in file 5.35 has a stack-based buffer over-read, related to file_printf and file_vprintf.file project · file · CWE-125 | Yüksek8,8 | — | %2,5 | 18 Şub 2019 |
32İzleyin | CVE-2019-18218İstismar yok | cdf_read_property_info in cdf.c in file through 5.37 does not restrict the number of CDF_VECTOR elements, which allows a heap-based buffer ofile project · file · CWE-787 | Yüksek7,8 | — | %1,9 | 21 Eki 2019 |
31İzleyin | CVE-2014-9653İstismar yok | readelf.c in file before 5.22, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5, does notphp · php · CWE-20 | Yüksek7,5 | — | %4,6 | 30 Mar 2015 |
29İzleyin | CVE-2014-3480İstismar yok | The cdf_count_chain function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, dphp · php · CWE-20 | Orta6,5 | — | %11,5 | 9 Tem 2014 |
27İzleyin | CVE-2018-10360İstismar yok | The do_core_note function in readelf.c in libmagic.a in file 5.33 allows remote attackers to cause a denial of service (out-of-bounds read afile project · file · CWE-125 | Orta6,5 | — | %3,4 | 11 Haz 2018 |
22İzleyin | CVE-2014-8117İstismar yok | softmagic.c in file before 5.21 does not properly limit recursion, which allows remote attackers to cause a denial of service (CPU consumptifile project · file · CWE-399 | Orta5,0 | — | %5,9 | 17 Ara 2014 |
22İzleyin | CVE-2014-9652İstismar yok | The mconvert function in softmagic.c in file before 5.21, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5php · php · CWE-119 | Orta5,0 | — | %5,5 | 30 Mar 2015 |
22İzleyin | CVE-2022-48554İstismar yok | File before 5.43 has an stack-based buffer over-read in file_copystr in funcs.c.file project · file · CWE-125 | Orta5,5 | — | %0,7 | 22 Ağu 2023 |
22İzleyin | CVE-2017-1000249İstismar yok | An issue in file() was introduced in commit 9611f31313a93aa036389c5f3b15eea53510d4d1 (Oct 2016) lets an attacker overwrite a fixed 20 bytes file project · file · CWE-119 | Orta5,5 | — | %0,4 | 11 Eyl 2017 |
21İzleyin | CVE-2014-3479İstismar yok | The cdf_check_stream_offset function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5php · php | Orta4,3 | — | %14,9 | 9 Tem 2014 |
21İzleyin | CVE-2014-3487İstismar yok | The cdf_read_property_info function in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, doephp · php · CWE-20 | Orta4,3 | — | %14,9 | 9 Tem 2014 |
21İzleyin | CVE-2014-9620İstismar yok | The ELF parser in file 5.08 through 5.21 allows remote attackers to cause a denial of service via a large number of notes.file project · file · CWE-399 | Orta5,0 | — | %4,7 | 21 Oca 2015 |
21İzleyin | CVE-2014-8116İstismar yok | The ELF parser (readelf.c) in file before 5.21 allows remote attackers to cause a denial of service (CPU consumption or crash) via a large nfile project · file · CWE-399 | Orta5,0 | — | %4,4 | 17 Ara 2014 |
21İzleyin | CVE-2014-9621İstismar yok | The ELF parser in file 5.16 through 5.21 allows remote attackers to cause a denial of service via a long string.file project · file · CWE-399 | Orta5,0 | — | %3,0 | 21 Oca 2015 |
18İzleyin | CVE-2014-2270İstismar yok | softmagic.c in file before 5.17 and libmagic allows context-dependent attackers to cause a denial of service (out-of-bounds memory access anfile project · file · CWE-119 | Orta4,3 | — | %4,3 | 14 Mar 2014 |
17İzleyin | CVE-2019-8906İstismar yok | do_core_note in readelf.c in libmagic.a in file 5.35 has an out-of-bounds read because memcpy is misused.file project · file · CWE-125 | Orta4,4 | — | %0,5 | 18 Şub 2019 |
17İzleyin | CVE-2019-8905İstismar yok | do_core_note in readelf.c in libmagic.a in file 5.35 has a stack-based buffer over-read, related to file_printable, a different vulnerabilitdebian · debian linux · CWE-125 | Orta4,4 | — | %0,5 | 18 Şub 2019 |
- CVE-2019-890736İzleyin
do_core_note in readelf.c in libmagic.a in file 5.35 allows remote attackers to cause a denial of service (stack corruption and application
YüksekCVSS 8,8İstismar yokEPSS %3file project · file18 Şub 2019
- CVE-2019-890436İzleyin
do_bid_note in readelf.c in libmagic.a in file 5.35 has a stack-based buffer over-read, related to file_printf and file_vprintf.
YüksekCVSS 8,8İstismar yokEPSS %2file project · file18 Şub 2019
- CVE-2019-1821832İzleyin
cdf_read_property_info in cdf.c in file through 5.37 does not restrict the number of CDF_VECTOR elements, which allows a heap-based buffer o
YüksekCVSS 7,8İstismar yokEPSS %2file project · file21 Eki 2019
- CVE-2014-965331İzleyin
readelf.c in file before 5.22, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5, does not
YüksekCVSS 7,5İstismar yokEPSS %5php · php30 Mar 2015
- CVE-2014-348029İzleyin
The cdf_count_chain function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, d
OrtaCVSS 6,5İstismar yokEPSS %11php · php9 Tem 2014
- CVE-2018-1036027İzleyin
The do_core_note function in readelf.c in libmagic.a in file 5.33 allows remote attackers to cause a denial of service (out-of-bounds read a
OrtaCVSS 6,5İstismar yokEPSS %3file project · file11 Haz 2018
- CVE-2014-811722İzleyin
softmagic.c in file before 5.21 does not properly limit recursion, which allows remote attackers to cause a denial of service (CPU consumpti
OrtaCVSS 5,0İstismar yokEPSS %6file project · file17 Ara 2014
- CVE-2014-965222İzleyin
The mconvert function in softmagic.c in file before 5.21, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5
OrtaCVSS 5,0İstismar yokEPSS %5php · php30 Mar 2015
- CVE-2022-4855422İzleyin
File before 5.43 has an stack-based buffer over-read in file_copystr in funcs.c.
OrtaCVSS 5,5İstismar yokEPSS %1file project · file22 Ağu 2023
- CVE-2017-100024922İzleyin
An issue in file() was introduced in commit 9611f31313a93aa036389c5f3b15eea53510d4d1 (Oct 2016) lets an attacker overwrite a fixed 20 bytes
OrtaCVSS 5,5İstismar yokEPSS %0file project · file11 Eyl 2017
- CVE-2014-347921İzleyin
The cdf_check_stream_offset function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5
OrtaCVSS 4,3İstismar yokEPSS %15php · php9 Tem 2014
- CVE-2014-348721İzleyin
The cdf_read_property_info function in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, doe
OrtaCVSS 4,3İstismar yokEPSS %15php · php9 Tem 2014
- CVE-2014-962021İzleyin
The ELF parser in file 5.08 through 5.21 allows remote attackers to cause a denial of service via a large number of notes.
OrtaCVSS 5,0İstismar yokEPSS %5file project · file21 Oca 2015
- CVE-2014-811621İzleyin
The ELF parser (readelf.c) in file before 5.21 allows remote attackers to cause a denial of service (CPU consumption or crash) via a large n
OrtaCVSS 5,0İstismar yokEPSS %4file project · file17 Ara 2014
- CVE-2014-962121İzleyin
The ELF parser in file 5.16 through 5.21 allows remote attackers to cause a denial of service via a long string.
OrtaCVSS 5,0İstismar yokEPSS %3file project · file21 Oca 2015
- CVE-2014-227018İzleyin
softmagic.c in file before 5.17 and libmagic allows context-dependent attackers to cause a denial of service (out-of-bounds memory access an
OrtaCVSS 4,3İstismar yokEPSS %4file project · file14 Mar 2014
- CVE-2019-890617İzleyin
do_core_note in readelf.c in libmagic.a in file 5.35 has an out-of-bounds read because memcpy is misused.
OrtaCVSS 4,4İstismar yokEPSS %0file project · file18 Şub 2019
- CVE-2019-890517İzleyin
do_core_note in readelf.c in libmagic.a in file 5.35 has a stack-based buffer over-read, related to file_printable, a different vulnerabilit
OrtaCVSS 4,4İstismar yokEPSS %0debian · debian linux18 Şub 2019