USN-3911-1 fixed vulnerabilities in file. One of the backported security fixes introduced a regression that caused the interpreter string to be truncated. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
It was discovered that file incorrectly handled certain malformed ELF files. An attacker could use this issue to cause a denial of service, or possibly execute arbitrary code.
{
"binaries": [
{
"binary_version": "1:5.25-2ubuntu1.4",
"binary_name": "file"
},
{
"binary_version": "1:5.25-2ubuntu1.4",
"binary_name": "libmagic1"
},
{
"binary_version": "1:5.25-2ubuntu1.4",
"binary_name": "python-magic"
},
{
"binary_version": "1:5.25-2ubuntu1.4",
"binary_name": "python3-magic"
}
],
"availability": "No subscription required"
}