rpm package
almalinux/file-libs
pkg:rpm/almalinux/file-libs
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2022-48554 | Med | 5.5 | < 5.39-16.el9 | 5.39-16.el9 | Aug 22, 2023 | File before 5.43 has an stack-based buffer over-read in file_copystr in funcs.c. NOTE: "File" is the name of an Open Source project. | |
| CVE-2019-18218 | Hig | 7.8 | < 5.33-20.el8 | 5.33-20.el8 | Oct 21, 2019 | cdf_read_property_info in cdf.c in file through 5.37 does not restrict the number of CDF_VECTOR elements, which allows a heap-based buffer overflow (4-byte out-of-bounds write). |
- affected < 5.39-16.el9fixed 5.39-16.el9
File before 5.43 has an stack-based buffer over-read in file_copystr in funcs.c. NOTE: "File" is the name of an Open Source project.
- affected < 5.33-20.el8fixed 5.33-20.el8
cdf_read_property_info in cdf.c in file through 5.37 does not restrict the number of CDF_VECTOR elements, which allows a heap-based buffer overflow (4-byte out-of-bounds write).