file: Denial of service A vulnerability in file could lead to a Denial of Service condition. file 2018-06-23 2018-06-23 657930 remote 5.33-r2 5.33-r2

file is a utility that guesses a file format by scanning binary data for patterns.

File does not properly utilize the do_core_note function in readelf.c in libmagic.a.

A remote attacker could send a specially crafted ELF file possibly resulting in a Denial of Service condition.

There is no known workaround at this time.

All file users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=sys-apps/file-5.33-r2"
CVE-2018-10360 b-man Zlogene