Debian Security Advisory
DSA-3021-1 file -- security update
- Date Reported:
- 09 Sep 2014
- Affected Packages:
- file
- Vulnerable:
- Yes
- Security database references:
- In Mitre's CVE dictionary: CVE-2014-0207, CVE-2014-0237, CVE-2014-0238, CVE-2014-3478, CVE-2014-3479, CVE-2014-3480, CVE-2014-3487, CVE-2014-3538, CVE-2014-3587.
- More information:
-
Multiple security issues have been found in file, a tool to determine a file type. These vulnerabilities allow remote attackers to cause a denial of service, via resource consumption or application crash.
For the stable distribution (wheezy), these problems have been fixed in version 5.11-2+deb7u4.
For the testing distribution (jessie), these problems have been fixed in version file 1:5.19-2.
For the unstable distribution (sid), these problems have been fixed in version file 1:5.19-2.
We recommend that you upgrade your file packages.