VDB

ALPINE-CVE-2019-8907

ALPINE-CVE-2019-8907 PUBLISHED CVSS 8.800000190734863 HIGH

do_core_note in readelf.c in libmagic.a in file 5.35 allows remote attackers to cause a denial of service (stack corruption and application crash) or possibly have unspecified other impact.

Risk Scores

CVSS 3.0
8.800000190734863
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersions
Alpine:v3.24file0, 0
Alpine:v3.14file5.33-r0, 5.32-r0, 5.31-r1
Alpine:v3.10file4.26-r1, 0, 0
Alpine:v3.18file4.26-r1, 0, 0
Alpine:v3.17file0, 5.35-r0, 5.33-r0
Alpine:v3.20file5.08-r0, 5.00-r0, 5.01-r0
Alpine:v3.11file5.25-r1, 5.25-r0, 5.23-r0
Alpine:v3.15file5.07-r0, 0, 0
Alpine:v3.12file5.28-r0, 5.30-r0, 5.31-r0
Alpine:v3.16file5.32-r0, 0, 0
Alpine:v3.13file5.23-r0, 0, 0
Alpine:v3.23file5.19-r1, 5.09-r1, 5.09-r0
Alpine:v3.8file5.00-r0, 5.04-r0, 5.23-r0
Alpine:v3.22file5.12-r0, 4.26-r1, 5.01-r0
Alpine:v3.21file5.30-r0, 5.31-r0, 5.31-r1
Alpine:v3.7file5.17-r0, 0, 0
Alpine:v3.9file5.00-r0, 5.16-r0, 5.17-r0
Alpine:v3.19file5.09-r0, 5.33-r0, 5.32-r0

Timeline

  • Feb 18, 2019 CVE Published
  • Apr 30, 2026 Distribution Patch
  • Jun 9, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›