CVE-2019-8905

Source
Severity High
Remote No
Type Information disclosure
Description
do_core_note in readelf.c in libmagic.a in file 5.35 has a stack-based buffer over-read, related to file_printable, a different vulnerability than CVE-2018-10360.
Group Package Affected Fixed Severity Status Ticket
AVG-907 file 5.35-1 5.36-1 High Fixed
Date Advisory Group Package Severity Description
03 Mar 2019 ASA-201903-5 AVG-907 file High multiple issues
References
https://bugs.astron.com/view.php?id=63