Description: | Summary: The remote host is missing an update for the 'file' package(s) announced via the ELSA-2014-1606 advisory.
Vulnerability Insight: [5.04-21] - fix typographical error in changelog
[5.04-20] - fix #1037279 - better patch for the bug from previous release
[5.04-19] - fix #1037279 - display 'from' field on 32bit ppc core
[5.04-18] - fix #664513 - trim white-spaces during ISO9660 detection
[5.04-17] - fix CVE-2014-3479 (cdf_check_stream_offset boundary check) - fix CVE-2014-3480 (cdf_count_chain insufficient boundary check) - fix CVE-2014-0237 (cdf_unpack_summary_info() excessive looping DoS) - fix CVE-2014-0238 (CDF property info parsing nelements infinite loop) - fix CVE-2014-2270 (out-of-bounds access in search rules with offsets) - fix CVE-2014-1943 (unrestricted recursion in handling of indirect type rules) - fix CVE-2012-1571 (out of bounds read in CDF parser)
[5.04-16] - fix #873997 - improve Minix detection pattern to fix false positives - fix #884396 - improve PBM pattern to fix misdetection with x86 boot sector - fix #980941 - improve Bio-Rad pattern to fix false positives - fix #849621 - tweak strength of XML, Latex and Python patterns to execute them in the proper order - fix #1067771 - detect qcow version 3 images - fix #1064463 - treat RRDTool files as binary files
Affected Software/OS: 'file' package(s) on Oracle Linux 6.
Solution: Please install the updated package(s).
CVSS Score: 5.0
CVSS Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P
|