-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- -------------------------------------------------------------------------
Debian Security Advisory DSA-3196-1                   security@debian.org
http://www.debian.org/security/                        Moritz Muehlenhoff
March 18, 2015                         http://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package        : file
CVE ID         : CVE-2014-9653

Hanno Boeck discovered that file's ELF parser is suspectible to denial
of service.

For the stable distribution (wheezy), this problem has been fixed in
version 5.11-2+deb7u8.

For the upcoming stable distribution (jessie), this problem has been
fixed in version 1:5.22+15-1.

For the unstable distribution (sid), this problem has been fixed in
version 1:5.22+15-1.

We recommend that you upgrade your file packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce@lists.debian.org

Debian: DSA-3196-1: file security update

March 18, 2015
Hanno Boeck discovered that file's ELF parser is suspectible to denial of service

Summary

Hanno Boeck discovered that file's ELF parser is suspectible to denial
of service.

For the stable distribution (wheezy), this problem has been fixed in
version 5.11-2+deb7u8.

For the upcoming stable distribution (jessie), this problem has been
fixed in version 1:5.22+15-1.

For the unstable distribution (sid), this problem has been fixed in
version 1:5.22+15-1.

We recommend that you upgrade your file packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce@lists.debian.org

Severity
Package : file
CVE ID : CVE-2014-9653

Related News