CVE Vulnerabilities

CVE-2010-0405

Published: Sep 28, 2010 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.1 MEDIUM
AV:N/AC:H/Au:N/C:P/I:P/A:P
RedHat/V2
5.1 IMPORTANT
AV:N/AC:H/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Integer overflow in the BZ2_decompress function in decompress.c in bzip2 and libbzip2 before 1.0.6 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted compressed file.

Affected Software

NameVendorStart VersionEnd Version
Bzip2Bzip*1.0.5 (including)
Bzip2Bzip0.9 (including)0.9 (including)
Bzip2Bzip0.9.0 (including)0.9.0 (including)
Bzip2Bzip0.9.0a (including)0.9.0a (including)
Bzip2Bzip0.9.0b (including)0.9.0b (including)
Bzip2Bzip0.9.0c (including)0.9.0c (including)
Bzip2Bzip0.9.5_a (including)0.9.5_a (including)
Bzip2Bzip0.9.5_b (including)0.9.5_b (including)
Bzip2Bzip0.9.5_c (including)0.9.5_c (including)
Bzip2Bzip0.9.5_d (including)0.9.5_d (including)
Bzip2Bzip0.9.5a (including)0.9.5a (including)
Bzip2Bzip0.9.5b (including)0.9.5b (including)
Bzip2Bzip0.9.5c (including)0.9.5c (including)
Bzip2Bzip0.9.5d (including)0.9.5d (including)
Bzip2Bzip0.9_a (including)0.9_a (including)
Bzip2Bzip0.9_b (including)0.9_b (including)
Bzip2Bzip0.9_c (including)0.9_c (including)
Bzip2Bzip1.0 (including)1.0 (including)
Bzip2Bzip1.0.1 (including)1.0.1 (including)
Bzip2Bzip1.0.2 (including)1.0.2 (including)
Bzip2Bzip1.0.3 (including)1.0.3 (including)
Bzip2Bzip1.0.4 (including)1.0.4 (including)
Libzip2Libzip2*1.0.5 (including)
Red Hat Enterprise Linux 3RedHatbzip2-0:1.0.2-14.EL3*
Red Hat Enterprise Linux 4RedHatbzip2-0:1.0.2-16.el4_8*
Red Hat Enterprise Linux 5RedHatbzip2-0:1.0.3-6.el5_5*
Red Hat Enterprise Linux 6RedHatbzip2-0:1.0.5-7.el6_0*
Bzip2Ubuntudapper*
Bzip2Ubuntudevel*
Bzip2Ubuntuhardy*
Bzip2Ubuntujaunty*
Bzip2Ubuntukarmic*
Bzip2Ubuntulucid*
Bzip2Ubuntuupstream*
ClamavUbuntudapper*
ClamavUbuntudevel*
ClamavUbuntuhardy*
ClamavUbuntujaunty*
ClamavUbuntukarmic*
ClamavUbuntulucid*
DpkgUbuntudapper*
DpkgUbuntuhardy*
DpkgUbuntujaunty*
DpkgUbuntukarmic*
DpkgUbuntulucid*
DumpUbuntudapper*
DumpUbuntudevel*
DumpUbuntuhardy*
DumpUbuntujaunty*
DumpUbuntukarmic*
DumpUbuntulucid*

References