MGASA-2018-0295

Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 24 Jun 2018, 22:02
Last modified:16 Apr 2026, 06:23

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

24 Jun 2018, 22:02
Published
Vulnerability first disclosed
16 Apr 2026, 06:23
Last Modified
Vulnerability information updated

Description

Updated file packages fix a security vulnerability The updated packages fix a security vulnerability: The do_core_note function in readelf.c in libmagic.a in file 5.33 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted ELF file. (CVE-2018-10360)

Affected Systems

  • mageiafile

    < 5.19-10.2.mga5

  • mageiafile

    < 5.25-5.1.mga6

References (3)