Integer overflow in the BZ2_decompress function in decompress.c in bzip2 and libbzip2 before 1.0.6 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted compressed file.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Bzip2 | Bzip | * | 1.0.5 (including) |
Bzip2 | Bzip | 0.9 (including) | 0.9 (including) |
Bzip2 | Bzip | 0.9.0 (including) | 0.9.0 (including) |
Bzip2 | Bzip | 0.9.0a (including) | 0.9.0a (including) |
Bzip2 | Bzip | 0.9.0b (including) | 0.9.0b (including) |
Bzip2 | Bzip | 0.9.0c (including) | 0.9.0c (including) |
Bzip2 | Bzip | 0.9.5_a (including) | 0.9.5_a (including) |
Bzip2 | Bzip | 0.9.5_b (including) | 0.9.5_b (including) |
Bzip2 | Bzip | 0.9.5_c (including) | 0.9.5_c (including) |
Bzip2 | Bzip | 0.9.5_d (including) | 0.9.5_d (including) |
Bzip2 | Bzip | 0.9.5a (including) | 0.9.5a (including) |
Bzip2 | Bzip | 0.9.5b (including) | 0.9.5b (including) |
Bzip2 | Bzip | 0.9.5c (including) | 0.9.5c (including) |
Bzip2 | Bzip | 0.9.5d (including) | 0.9.5d (including) |
Bzip2 | Bzip | 0.9_a (including) | 0.9_a (including) |
Bzip2 | Bzip | 0.9_b (including) | 0.9_b (including) |
Bzip2 | Bzip | 0.9_c (including) | 0.9_c (including) |
Bzip2 | Bzip | 1.0 (including) | 1.0 (including) |
Bzip2 | Bzip | 1.0.1 (including) | 1.0.1 (including) |
Bzip2 | Bzip | 1.0.2 (including) | 1.0.2 (including) |
Bzip2 | Bzip | 1.0.3 (including) | 1.0.3 (including) |
Bzip2 | Bzip | 1.0.4 (including) | 1.0.4 (including) |
Libzip2 | Libzip2 | * | 1.0.5 (including) |