Medium severity5.5NVD Advisory· Published Aug 22, 2023· Updated Jun 17, 2026
CVE-2022-48554
CVE-2022-48554
Description
File before 5.43 has an stack-based buffer over-read in file_copystr in funcs.c. NOTE: "File" is the name of an Open Source project.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8cpe:2.3:a:file_project:file:5.41:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:file_project:file:5.41:*:*:*:*:*:*:*
- (no CPE)
- Range: <5.43
- osv-coords4 versionspkg:rpm/almalinux/filepkg:rpm/almalinux/file-develpkg:rpm/almalinux/file-libspkg:rpm/almalinux/python3-file-magic
< 5.39-16.el9+ 3 more
- (no CPE)range: < 5.39-16.el9
- (no CPE)range: < 5.39-16.el9
- (no CPE)range: < 5.39-16.el9
- (no CPE)range: < 5.39-16.el9
Patches
Vulnerability mechanics
References
10- bugs.astron.com/view.phpnvdExploitVendor Advisory
- security.netapp.com/advisory/ntap-20231116-0002/nvdThird Party Advisory
- www.debian.org/security/2023/dsa-5489nvdThird Party Advisory
- seclists.org/fulldisclosure/2024/Mar/21nvd
- seclists.org/fulldisclosure/2024/Mar/24nvd
- seclists.org/fulldisclosure/2024/Mar/25nvd
- support.apple.com/kb/HT214081nvd
- support.apple.com/kb/HT214084nvd
- support.apple.com/kb/HT214086nvd
- support.apple.com/kb/HT214088nvd
News mentions
0No linked articles in our index yet.