docorenote in readelf.c in libmagic.a in file 5.35 has a stack-based buffer over-read, related to file_printable, a different vulnerability than CVE-2018-10360.
{
"binaries": [
{
"binary_name": "file",
"binary_version": "1:5.25-2ubuntu1.2"
},
{
"binary_name": "libmagic-dev",
"binary_version": "1:5.25-2ubuntu1.2"
},
{
"binary_name": "libmagic1",
"binary_version": "1:5.25-2ubuntu1.2"
},
{
"binary_name": "python-magic",
"binary_version": "1:5.25-2ubuntu1.2"
},
{
"binary_name": "python3-magic",
"binary_version": "1:5.25-2ubuntu1.2"
}
],
"availability": "No subscription required"
}
{
"binaries": [
{
"binary_name": "file",
"binary_version": "1:5.32-2ubuntu0.2"
},
{
"binary_name": "libmagic-dev",
"binary_version": "1:5.32-2ubuntu0.2"
},
{
"binary_name": "libmagic-mgc",
"binary_version": "1:5.32-2ubuntu0.2"
},
{
"binary_name": "libmagic1",
"binary_version": "1:5.32-2ubuntu0.2"
}
],
"availability": "No subscription required"
}