CVE-2017-1000249
Gentoo Linux Security Advisory 201710-02
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
An issue in file() was introduced in commit 9611f31313a93aa036389c5f3b15eea53510d4d1 (Oct 2016) lets an attacker overwrite a fixed 20 bytes stack buffer with a specially crafted .notes section in an ELF binary. This was fixed in commit 35c94dc6acc418f1ad7f6241a6680e5327495793 (Aug 2017).
Se introdujo un fallo en la función file() en un commit con ID 9611f31313a93aa036389c5f3b15eea53510d4d1 (octubre 2016) que permite a un atacante sobrescribir un búfer de pila fijo de 20 bytes con una sección .notes especialmente manipulada en un archivo binario ELF. Esto se solucionó en el commit con ID 35c94dc6acc418f1ad7f6241a6680e5327495793 (agosto 2017).
Thomas Jarosch discovered a stack-based buffer overflow flaw in file, a file type classification tool, which may result in denial of service if an ELF binary with a specially crafted .notes section is processed.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2017-09-07 CVE Published
- 2017-09-11 CVE Reserved
- 2024-08-05 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
References (4)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://github.com/file/file/commit/35c94dc6acc418f1ad7f6241a6680e5327495793 | 2017-11-08 | |
https://github.com/file/file/commit/9611f31313a93aa036389c5f3b15eea53510d4d | 2017-11-08 |
URL | Date | SRC |
---|---|---|
http://www.debian.org/security/2017/dsa-3965 | 2017-11-08 | |
https://security.gentoo.org/glsa/201710-02 | 2017-11-08 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
File Project Search vendor "File Project" | File Search vendor "File Project" for product "File" | 5.29 Search vendor "File Project" for product "File" and version "5.29" | - |
Affected
|