CVE-2014-3478
Summary
| CVE | CVE-2014-3478 |
|---|---|
| State | PUBLISHED |
| Assigner | redhat |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2014-07-09 11:07:01 UTC |
| Updated | 2026-05-06 22:30:45 UTC |
| Description | Buffer overflow in the mconvert function in softmagic.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, allows remote attackers to cause a denial of service (application crash) via a crafted Pascal string in a FILE_PSTRING conversion. |
Risk And Classification
Primary CVSS: v3.1 6.5 MEDIUM from ADP
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Problem Types: CWE-119 | n/a | CWE-119 CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer
| Version | Source | Type | Score | Severity | Vector |
|---|---|---|---|---|---|
| 3.1 | ADP | DECLARED | 6.5 | MEDIUM | CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H |
| 3.1 | 134c704f-9b21-4f2e-91b3-4a467353bcc0 | Secondary | 6.5 | MEDIUM | CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H |
| 2.0 | [email protected] | Primary | 5 | AV:N/AC:L/Au:N/C:N/I:N/A:P |
CVSS v3.1 Breakdown
Attack Vector
NetworkAttack Complexity
LowPrivileges Required
NoneUser Interaction
RequiredScope
UnchangedConfidentiality
NoneIntegrity
NoneAvailability
HighCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
NoneIntegrity
NoneAvailability
PartialAV:N/AC:L/Au:N/C:N/I:N/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Christos Zoulas | File | 5.00 | All | All | All |
| Application | Christos Zoulas | File | 5.01 | All | All | All |
| Application | Christos Zoulas | File | 5.02 | All | All | All |
| Application | Christos Zoulas | File | 5.03 | All | All | All |
| Application | Christos Zoulas | File | 5.04 | All | All | All |
| Application | Christos Zoulas | File | 5.05 | All | All | All |
| Application | Christos Zoulas | File | 5.06 | All | All | All |
| Application | Christos Zoulas | File | 5.07 | All | All | All |
| Application | Christos Zoulas | File | 5.08 | All | All | All |
| Application | Christos Zoulas | File | 5.09 | All | All | All |
| Application | Christos Zoulas | File | 5.10 | All | All | All |
| Application | Christos Zoulas | File | 5.11 | All | All | All |
| Application | Christos Zoulas | File | 5.12 | All | All | All |
| Application | Christos Zoulas | File | 5.13 | All | All | All |
| Application | Christos Zoulas | File | 5.14 | All | All | All |
| Application | Christos Zoulas | File | 5.15 | All | All | All |
| Application | Christos Zoulas | File | 5.16 | All | All | All |
| Application | Christos Zoulas | File | 5.17 | All | All | All |
| Application | Christos Zoulas | File | All | All | All | All |
| Application | Php | Php | 5.4.0 | All | All | All |
| Application | Php | Php | 5.4.1 | All | All | All |
| Application | Php | Php | 5.4.10 | All | All | All |
| Application | Php | Php | 5.4.11 | All | All | All |
| Application | Php | Php | 5.4.12 | All | All | All |
| Application | Php | Php | 5.4.12 | rc1 | All | All |
| Application | Php | Php | 5.4.12 | rc2 | All | All |
| Application | Php | Php | 5.4.13 | All | All | All |
| Application | Php | Php | 5.4.13 | rc1 | All | All |
| Application | Php | Php | 5.4.14 | All | All | All |
| Application | Php | Php | 5.4.14 | rc1 | All | All |
| Application | Php | Php | 5.4.15 | rc1 | All | All |
| Application | Php | Php | 5.4.16 | rc1 | All | All |
| Application | Php | Php | 5.4.17 | All | All | All |
| Application | Php | Php | 5.4.18 | All | All | All |
| Application | Php | Php | 5.4.19 | All | All | All |
| Application | Php | Php | 5.4.2 | All | All | All |
| Application | Php | Php | 5.4.20 | All | All | All |
| Application | Php | Php | 5.4.21 | All | All | All |
| Application | Php | Php | 5.4.22 | All | All | All |
| Application | Php | Php | 5.4.23 | All | All | All |
| Application | Php | Php | 5.4.24 | All | All | All |
| Application | Php | Php | 5.4.25 | All | All | All |
| Application | Php | Php | 5.4.26 | All | All | All |
| Application | Php | Php | 5.4.27 | All | All | All |
| Application | Php | Php | 5.4.28 | All | All | All |
| Application | Php | Php | 5.4.3 | All | All | All |
| Application | Php | Php | 5.4.4 | All | All | All |
| Application | Php | Php | 5.4.5 | All | All | All |
| Application | Php | Php | 5.4.6 | All | All | All |
| Application | Php | Php | 5.4.7 | All | All | All |
| Application | Php | Php | 5.4.8 | All | All | All |
| Application | Php | Php | 5.4.9 | All | All | All |
| Application | Php | Php | 5.5.0 | All | All | All |
| Application | Php | Php | 5.5.0 | alpha1 | All | All |
| Application | Php | Php | 5.5.0 | alpha2 | All | All |
| Application | Php | Php | 5.5.0 | alpha3 | All | All |
| Application | Php | Php | 5.5.0 | alpha4 | All | All |
| Application | Php | Php | 5.5.0 | alpha5 | All | All |
| Application | Php | Php | 5.5.0 | alpha6 | All | All |
| Application | Php | Php | 5.5.0 | beta1 | All | All |
| Application | Php | Php | 5.5.0 | beta2 | All | All |
| Application | Php | Php | 5.5.0 | beta3 | All | All |
| Application | Php | Php | 5.5.0 | beta4 | All | All |
| Application | Php | Php | 5.5.0 | rc1 | All | All |
| Application | Php | Php | 5.5.0 | rc2 | All | All |
| Application | Php | Php | 5.5.1 | All | All | All |
| Application | Php | Php | 5.5.10 | All | All | All |
| Application | Php | Php | 5.5.11 | All | All | All |
| Application | Php | Php | 5.5.12 | All | All | All |
| Application | Php | Php | 5.5.13 | All | All | All |
| Application | Php | Php | 5.5.2 | All | All | All |
| Application | Php | Php | 5.5.3 | All | All | All |
| Application | Php | Php | 5.5.4 | All | All | All |
| Application | Php | Php | 5.5.5 | All | All | All |
| Application | Php | Php | 5.5.6 | All | All | All |
| Application | Php | Php | 5.5.7 | All | All | All |
| Application | Php | Php | 5.5.8 | All | All | All |
| Application | Php | Php | 5.5.9 | All | All | All |
| Application | Php | Php | All | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Red Hat Customer Portal | af854a3a-2127-422b-91ae-364da2661108 | rhn.redhat.com | |
| PHP :: Sec Bug #67410 :: fileinfo: mconvert incorrect handling of truncated pascal string size | af854a3a-2127-422b-91ae-364da2661108 | bugs.php.net | Patch |
| About the security content of OS X Yosemite v10.10.3 and Security Update 2015-004 - Apple Support | af854a3a-2127-422b-91ae-364da2661108 | support.apple.com | |
| openSUSE-SU-2014:1236-1: moderate: several security fixes for php5 | af854a3a-2127-422b-91ae-364da2661108 | lists.opensuse.org | |
| Correctly compute the truncated pascal string size (Francisco Alonso and · file/file@27a14bc · GitHub | af854a3a-2127-422b-91ae-364da2661108 | github.com | Exploit, Patch |
| PHP: PHP 5 ChangeLog | af854a3a-2127-422b-91ae-364da2661108 | www.php.net | |
| PHP Fileinfo Component CVE-2014-3478 Remote Denial of Service Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| About the security content of OS X Mavericks v10.9.5 and Security Update 2014-004 - Apple Support | af854a3a-2127-422b-91ae-364da2661108 | support.apple.com | |
| Oracle Bulletin Board Update - January 2015 | af854a3a-2127-422b-91ae-364da2661108 | www.oracle.com | |
| Debian -- Security Information -- DSA-2974-1 php5 | af854a3a-2127-422b-91ae-364da2661108 | www.debian.org | |
| APPLE-SA-2015-04-08-2 OS X 10.10.3 and Security Update 2015-004 | af854a3a-2127-422b-91ae-364da2661108 | lists.apple.com | |
| Red Hat Customer Portal | af854a3a-2127-422b-91ae-364da2661108 | rhn.redhat.com | |
| About Secunia Research | Flexera | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| file-5.19 is now available | af854a3a-2127-422b-91ae-364da2661108 | mx.gw.com | |
| Oracle Linux Bulletin - October 2015 | af854a3a-2127-422b-91ae-364da2661108 | www.oracle.com | |
| Red Hat Customer Portal | af854a3a-2127-422b-91ae-364da2661108 | rhn.redhat.com | |
| Debian -- Security Information -- DSA-3021-1 file | af854a3a-2127-422b-91ae-364da2661108 | www.debian.org | |
| About Secunia Research | Flexera | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| '[security bulletin] HPSBUX03102 SSRT101681 rev.1 - HP-UX Apache Server Suite running Apache Tomcat o' - MARC | af854a3a-2127-422b-91ae-364da2661108 | marc.info | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.