Bugzilla – Bug 1214507
VUL-0: CVE-2022-48554: file: stack-based buffer over-read in file_copystr in funcs.c.
Last modified: 2023-08-23 08:09:55 UTC
CVE-2022-48554 File before 5.43 has an stack-based buffer over-read in file_copystr in funcs.c. NOTE: "File" is the name of an Open Source project. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2022-48554 https://www.cve.org/CVERecord?id=CVE-2022-48554 https://bugs.astron.com/view.php?id=310
https://github.com/file/file/commit/497aabb29cd08d2a5aeb63e45798d65fcbe03502
problematic code added with 5.39 (841491b2f)
we do not ship any vulnerable versions, closing