oss-sec mailing list archives

Re: CVE Request: PHP/file: out-of-bounds memory access in softmagic


From: Hanno Böck <hanno () hboeck de>
Date: Wed, 4 Feb 2015 20:49:30 +0100

On Wed, 4 Feb 2015 19:53:36 +0100
Moritz Muehlenhoff <jmm () debian org> wrote:

Originally reported in file:
Bug report: http://bugs.gw.com/view.php?id=398
Fix:
https://github.com/file/file/commit/59e63838913eee47f5c120a6c53d4565af638158

There are more such issues, I haven't tested them in php:
http://bugs.gw.com/view.php?id=409
http://mx.gw.com/pipermail/file/2014/001649.html

-- 
Hanno Böck
http://hboeck.de/

mail/jabber: hanno () hboeck de
GPG: BBB51E42

Attachment: _bin
Description: OpenPGP digital signature


Current thread: