Ubuntu 6.06 LTS / 6.10 / 7.04 : file vulnerability (USN-439-2)

The remote Ubuntu host is missing one or more security-related patches.

USN-439-1 fixed a vulnerability in file. The original fix did not
fully solve the problem. This update provides a more complete

Jean-Sebastien Guay-Leroux discovered that 'file' did not correctly
check the size of allocated heap memory. If a user were tricked into
examining a specially crafted file with the 'file' utility, a remote
attacker could execute arbitrary code with user privileges.

Update the affected packages.

Medium / CVSS Base Score : 5.1

CVE ID: CVE-2007-2799