Back

MEDIUM

file: out of bounds read in CDF parser

Published Jul 17, 2012

Description

file before 5.11 and libmagic allow remote attackers to cause a denial of service (crash) via a crafted Composite Document File (CDF) file that triggers (1) an out-of-bounds read or (2) an invalid pointer dereference.

Affected products

Remediation

Red Hat statement

This issue did not affect the versions of the php and file packages as shipped with Red Hat Enterprise Linux 5 and 7.

Metrics

References (10)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Jul 17, 2012
Updated Dec 4, 2025
Reserved Mar 12, 2012
CISA Vulnrichment
Updated Dec 4, 2025
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Low
Public date Feb 16, 2012