Vulnerability Bulletins

DSA-3072 file - security update

   
Affected software Debian
 
Francisco Alonso of Red Hat Product Security found an issue in the fileutility: when checking ELF files, note headers are incorrectly checked,thus potentially allowing attackers to cause a denial of service(out-of-bounds read and application crash) by supplying a speciallycrafted ELF file.

More info:

https://www.debian.org/security/2014/dsa-3072