CVE-2014-9620: Medium severity File Project File vulnerability
Last updated 24 July 2024
Other sources
The ELF parser in file 5.08 through 5.21 allows remote attackers to cause a denial of service via a large number of notes.
— Launchpad
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2014-9620?
CVE-2014-9620 is a vulnerability in the ELF parser in file 5.08 through 5.21 that allows remote attackers to cause a denial of service via a large number of notes.
How severe is CVE-2014-9620?
CVE-2014-9620 has a severity level of medium.
Which software versions are affected by CVE-2014-9620?
The versions of file affected by CVE-2014-9620 are 5.08 through 5.21.
Are there any fixes available for CVE-2014-9620?
Yes, there are fixes available for CVE-2014-9620. For Ubuntu, version 5.14-2ubuntu3.4 or later and version 5.21+15-1 or later are recommended. For Debian, version 5.35-4+deb10u2 or later, 5.35-4+deb10u1 or later, 5.39-3+deb11u1 or later, 5.44-3 or later, and 5.45-2 or later are recommended.
Where can I find more information about CVE-2014-9620?
You can find more information about CVE-2014-9620 at the following references: [1](http://mx.gw.com/pipermail/file/2014/001653.html), [2](http://mx.gw.com/pipermail/file/2015/001660.html), [3](http://www.openwall.com/lists/oss-security/2015/01/17/9).