Oval Definition:oval:org.mitre.oval:def:22395
Revision Date:2014-05-26Version:13
Title:ELSA-2007:0391: file security update (Moderate)
Description:Integer overflow in the "file" program 4.20, when running on 32-bit systems, as used in products including The Sleuth Kit, might allow user-assisted attackers to execute arbitrary code via a large file that triggers an overflow that bypasses an assert() statement. NOTE: this issue is due to an incorrect patch for CVE-2007-1536.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2007-2799
ELSA-2007:0391-02
Platform(s):Oracle Linux 5
Product(s):file
Definition Synopsis
  • Oracle Linux 5.x
  • AND file is earlier than 0:4.17-9.0.1.el5
  • BACK