Fine Free file before 5.17 allows context-dependent attackers to cause a denial of service (infinite recursion, CPU consumption, and crash) via a crafted indirect offset value in the magic of a file.
The product does not handle or incorrectly handles an exceptional condition.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Fine_free_file | Fine_free_file_project | * | 5.17 (excluding) |
Red Hat Enterprise Linux 5 | RedHat | php53-0:5.3.3-23.el5_10 | * |
Red Hat Enterprise Linux 6 | RedHat | php-0:5.3.3-27.el6_5.1 | * |
Red Hat Enterprise Linux 6 | RedHat | file-0:5.04-21.el6 | * |
Red Hat Software Collections 1 for Red Hat Enterprise Linux 6 | RedHat | php54-php-0:5.4.16-22.el6 | * |
Red Hat Software Collections 1 for Red Hat Enterprise Linux 6.4 EUS | RedHat | php54-php-0:5.4.16-22.el6 | * |
Red Hat Software Collections 1 for Red Hat Enterprise Linux 6.5 EUS | RedHat | php54-php-0:5.4.16-22.el6 | * |
Red Hat Software Collections 1 for Red Hat Enterprise Linux 6.6 EUS | RedHat | php54-php-0:5.4.16-22.el6 | * |
Red Hat Software Collections 1 for Red Hat Enterprise Linux 7 | RedHat | php54-php-0:5.4.16-22.el7 | * |
File | Ubuntu | devel | * |
File | Ubuntu | lucid | * |
File | Ubuntu | precise | * |
File | Ubuntu | quantal | * |
File | Ubuntu | saucy | * |
File | Ubuntu | upstream | * |
Php5 | Ubuntu | devel | * |
Php5 | Ubuntu | lucid | * |
Php5 | Ubuntu | precise | * |
Php5 | Ubuntu | quantal | * |
Php5 | Ubuntu | saucy | * |
Php5 | Ubuntu | upstream | * |