File

Vendor:

First CVE: Mar 18, 2003 · Active for 23 years

22
Total CVEs
More Total CVEs than 93% of tracked products
2.4
Avg CVEs / Year
Higher CVE frequency than 76% of tracked products
6.0
Avg CVSS
Higher Avg CVSS than 17% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact File over time

Volume of CVEsAvg CVSS Base Score
First CVE
Mar 18, 2003
23 years ago
Most Recent CVE
Aug 22, 2023
1,068 days ago

CVE Severity & Scoring

File22 CVEs
All CVEs352,427 CVEs
MediumHigh
Attack Vector
Local5 (22.7%)
Network4 (18.2%)
Unknown13 (59.1%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low9 (40.9%)
High0 (0.0%)
Unknown13 (59.1%)
User Interaction
None3 (13.6%)
Unknown13 (59.1%)
Required6 (27.3%)
Privileges Required
Low3 (13.6%)
High0 (0.0%)
None6 (27.3%)
Unknown13 (59.1%)

Top CVEs

Signals from CVEs in this product scope (22 CVEs).

22 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Stack-based buffer overflow in the ELF header parsing code in file before 4.12 allows attackers to execute arbitrary code via a crafted ELF file.
Jan 10, 200510.047NOYES
Integer underflow in the file_printf function in the "file" program before 4.20 allows user-assisted attackers to execute arbitrary code via a file that triggers a heap-based buffe
Mar 20, 20079.341NOYES
cdf_read_property_info in cdf.c in file through 5.37 does not restrict the number of CDF_VECTOR elements, which allows a heap-based buffer overflow (4-byte out-of-bounds write).
Oct 21, 20197.826NONO
do_core_note in readelf.c in libmagic.a in file 5.35 allows remote attackers to cause a denial of service (stack corruption and application crash) or possibly have unspecified othe
Feb 18, 20198.824NONO
do_bid_note in readelf.c in libmagic.a in file 5.35 has a stack-based buffer over-read, related to file_printf and file_vprintf.
Feb 18, 20198.822NONO
The do_core_note function in readelf.c in libmagic.a in file 5.33 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted ELF
Jun 11, 20186.522NONO
Buffer overflow in tryelf() in readelf.c of the file command allows attackers to execute arbitrary code as the user running file, possibly via a large entity size value in an ELF h
Mar 18, 20034.622NOYES
readelf.c in file before 5.22, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5, does not consider that pread calls sometimes rea
Mar 30, 20157.521NONO
The cdf_count_chain function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, does not properly validate sector-count d
Jul 9, 20146.521NONO
An issue in file() was introduced in commit 9611f31313a93aa036389c5f3b15eea53510d4d1 (Oct 2016) lets an attacker overwrite a fixed 20 bytes stack buffer with a specially crafted .n
Sep 11, 20175.520NONO

Exploit Exposure

Signals from CVEs in this product scope (22 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
3 CVEs
13.6% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (22 CVEs).

Media Mentions

Signals from CVEs in this product scope (22 CVEs).

Top CNAs Publishing CVEs For File

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
5.4115.50.7%00
5.3546.61.7%00
5.3316.53.4%00
5.2915.50.4%00
5.2125.03.8%00
5.2035.04.0%00
5.1925.03.8%00
5.1825.03.8%00
5.1725.03.8%00
5.1625.03.8%00
5.1515.04.7%00
5.1415.04.7%00
5.1315.04.7%00
5.1215.04.7%00
5.1115.04.7%00
5.1015.04.7%00
5.0915.04.7%00
5.0815.04.7%00
4.9110.011.4%01
4.8110.011.4%01