MGASA-2014-0123

Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 07 Mar 2014, 14:18
Last modified:16 Apr 2026, 06:22

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

07 Mar 2014, 14:18
Published
Vulnerability first disclosed
16 Apr 2026, 06:22
Last Modified
Vulnerability information updated

Description

Updated file packages fix CVE-2014-2270 Updated file packages fix security vulnerability: A flaw was found in the way the file utility determined the type of Portable Executable (PE) format files, the executable format used on Windows. A malicious PE file could cause the file utility to crash or, potentially, execute arbitrary code (CVE-2014-2270). A memory leak in file has also been fixed.

Affected Systems

  • mageiafile

    < 5.12-8.2.mga3

  • mageiafile

    < 5.16-1.2.mga4

References (5)