FreeBSD : FreeBSD -- Multiple vulnerabilities in file(1) and libmagic(3) (70140f20-6007-11e6-a6c3-14dae9d210b8)

Medium Nessus Plugin ID 92905

Synopsis

The remote FreeBSD host is missing one or more security-related updates.

Description

A specifically crafted Composite Document File (CDF) file can trigger an out-of-bounds read or an invalid pointer dereference.
[CVE-2012-1571]

A flaw in regular expression in the awk script detector makes use of multiple wildcards with unlimited repetitions. [CVE-2013-7345]

A malicious input file could trigger infinite recursion in libmagic(3). [CVE-2014-1943]

A specifically crafted Portable Executable (PE) can trigger out-of-bounds read. [CVE-2014-2270] Impact : An attacker who can cause file(1) or any other applications using the libmagic(3) library to be run on a maliciously constructed input can the application to crash or consume excessive CPU resources, resulting in a denial-of-service.

Solution

Update the affected packages.

See Also

http://www.nessus.org/u?904617ed

Plugin Details

Severity: Medium

ID: 92905

File Name: freebsd_pkg_70140f20600711e6a6c314dae9d210b8.nasl

Version: 2.3

Type: local

Published: 2016/08/12

Updated: 2018/12/05

Dependencies: 12634

Configuration: Enable paranoid mode

Risk Information

Risk Factor: Medium

CVSS v2.0

Base Score: 5

Temporal Score: 3.7

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P

Temporal Vector: CVSS2#E:U/RL:OF/RC:C

Vulnerability Information

CPE: p-cpe:/a:freebsd:freebsd:FreeBSD, cpe:/o:freebsd:freebsd

Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info, Settings/ParanoidReport

Exploit Available: false

Exploit Ease: No known exploits are available

Patch Publication Date: 2016/08/11

Vulnerability Publication Date: 2014/06/24

Reference Information

CVE: CVE-2012-1571, CVE-2013-7345, CVE-2014-1943, CVE-2014-2270

BID: 52225, 65596, 66002, 66406

FreeBSD: SA-14:16.file