DSA-3021-1 file -- security update

Related Vulnerabilities: CVE-2014-0207   CVE-2014-0237   CVE-2014-0238   CVE-2014-3478   CVE-2014-3479   CVE-2014-3480   CVE-2014-3487   CVE-2014-3538   CVE-2014-3587  

Multiple security issues have been found in file, a tool to determine a file type. These vulnerabilities allow remote attackers to cause a denial of service, via resource consumption or application crash. For the stable distribution (wheezy), these problems have been fixed in version 5.11-2+deb7u4. For the testing distribution (jessie), these problems have been fixed in version file 1:5.19-2. For the unstable distribution (sid), these problems have been fixed in version file 1:5.19-2. We recommend that you upgrade your file packages.

Debian Security Advisory

DSA-3021-1 file -- security update

Date Reported:
09 Sep 2014
Affected Packages:
file
Vulnerable:
Yes
Security database references:
In Mitre's CVE dictionary: CVE-2014-0207, CVE-2014-0237, CVE-2014-0238, CVE-2014-3478, CVE-2014-3479, CVE-2014-3480, CVE-2014-3487, CVE-2014-3538, CVE-2014-3587.
More information:

Multiple security issues have been found in file, a tool to determine a file type. These vulnerabilities allow remote attackers to cause a denial of service, via resource consumption or application crash.

For the stable distribution (wheezy), these problems have been fixed in version 5.11-2+deb7u4.

For the testing distribution (jessie), these problems have been fixed in version file 1:5.19-2.

For the unstable distribution (sid), these problems have been fixed in version file 1:5.19-2.

We recommend that you upgrade your file packages.