Integer overflow in file - CVE-2014-3587
Published: April 1, 2016 / Updated: November 27, 2018
Vulnerability identifier: #VU3891
CSH Severity: Low
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2014-3587
CWE-ID: CWE-190
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to cause DoS condition on the target system.
The weakness exists due to integer overflow in the cdf_read_property_info function in cdf.c in file through 5.19, as used in the Fileinfo component in PHP before 5.4.32 and 5.5.x before 5.5.16. A remote attacker can trigger memory corruption via a crafted CDF fileand cause the service to crash.
The weakness exists due to integer overflow in the cdf_read_property_info function in cdf.c in file through 5.19, as used in the Fileinfo component in PHP before 5.4.32 and 5.5.x before 5.5.16. A remote attacker can trigger memory corruption via a crafted CDF fileand cause the service to crash.
Affected software
file
Amazon Linux AMI
Slackware Linux
php5 (Ubuntu package)
php (Alpine package)
Amazon Linux AMI
Slackware Linux
php5 (Ubuntu package)
php (Alpine package)
How to mitigate CVE-2014-3587
Install update from vendor's website.
php5 (Ubuntu package) - addressed in versions 5.3.2-1ubuntu4.27, 5.3.10-1ubuntu3.14
php (Alpine package) - update to 5.5.16-r0
php (Alpine package) - update to 5.5.16-r0