CVE Vulnerabilities

CVE-2014-1943

Improper Handling of Exceptional Conditions

Published: Feb 18, 2014 | Modified: Oct 31, 2022
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
4.3 MODERATE
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM

Fine Free file before 5.17 allows context-dependent attackers to cause a denial of service (infinite recursion, CPU consumption, and crash) via a crafted indirect offset value in the magic of a file.

Weakness

The product does not handle or incorrectly handles an exceptional condition.

Affected Software

Name Vendor Start Version End Version
Fine_free_file Fine_free_file_project * 5.17 (excluding)
Red Hat Enterprise Linux 5 RedHat php53-0:5.3.3-23.el5_10 *
Red Hat Enterprise Linux 6 RedHat php-0:5.3.3-27.el6_5.1 *
Red Hat Enterprise Linux 6 RedHat file-0:5.04-21.el6 *
Red Hat Software Collections 1 for Red Hat Enterprise Linux 6 RedHat php54-php-0:5.4.16-22.el6 *
Red Hat Software Collections 1 for Red Hat Enterprise Linux 6.4 EUS RedHat php54-php-0:5.4.16-22.el6 *
Red Hat Software Collections 1 for Red Hat Enterprise Linux 6.5 EUS RedHat php54-php-0:5.4.16-22.el6 *
Red Hat Software Collections 1 for Red Hat Enterprise Linux 6.6 EUS RedHat php54-php-0:5.4.16-22.el6 *
Red Hat Software Collections 1 for Red Hat Enterprise Linux 7 RedHat php54-php-0:5.4.16-22.el7 *
File Ubuntu devel *
File Ubuntu lucid *
File Ubuntu precise *
File Ubuntu quantal *
File Ubuntu saucy *
File Ubuntu upstream *
Php5 Ubuntu devel *
Php5 Ubuntu lucid *
Php5 Ubuntu precise *
Php5 Ubuntu quantal *
Php5 Ubuntu saucy *
Php5 Ubuntu upstream *

References