docs.info.apple.comConfirmation
http://docs.info.apple.com/article.html?artnum=305530 CVE-2007-1536
File(1) 4.13 - Command File_PrintF Integer Underflow
Record summary
CVE-2007-1536 has a selected CVSS score of 9.3; EIP currently links 1 catalogued exploit.
Description
Integer underflow in the file_printf function in the "file" program before 4.20 allows user-assisted attackers to execute arbitrary code via a file that triggers a heap-based buffer overflow.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBFile(1) 4.13 - Command File_PrintF Integer UnderflowExploitDB exploitby Jean-Sebastien Guay-LerouxNot analyzed1 file
References
Showing 12 of 43APPLE-SA-2007-05-24Vendor advisory
http://lists.apple.com/archives/security-announce/2007/May/msg00004.html [file] 20070302 file-4.20 is now availablemailing list
http://mx.gw.com/pipermail/file/2007/000161.html [4.0] 20070709 015: SECURITY FIX: July 9, 2007Vendor advisory
http://openbsd.org/errata40.html 24548Third-party advisory
http://secunia.com/advisories/24548 24592Third-party advisory
http://secunia.com/advisories/24592 24604Third-party advisory
http://secunia.com/advisories/24604 24608Third-party advisory
http://secunia.com/advisories/24608 24616Third-party advisory
http://secunia.com/advisories/24616 24617Third-party advisory
http://secunia.com/advisories/24617 24723Third-party advisory
http://secunia.com/advisories/24723 24754Third-party advisory
http://secunia.com/advisories/24754