CVE-2012-1571: Christos Zoulas File

Medium severity, CVSS 6.5. EPSS: 4.1% chance of exploitation in the next 30 days.

file before 5.11 and libmagic allow remote attackers to cause a denial of service (crash) via a crafted Composite Document File (CDF) file that triggers (1) an out-of-bounds read or (2) an invalid pointer dereference.

Affected products

Published 2012-07-17. Last modified 2026-06-16.