Wind River Support Network

HomeDefectsLIN7-6487
Fixed

LIN7-6487 : Security Advisory - bzip2 - CVE-2016-3189

Created: Jul 4, 2016    Updated: Sep 8, 2018
Resolved Date: Aug 16, 2016
Previous ID: LIN6-11509
Found In Version: 7.0.0.16
Fix Version: 7.0.0.19
Severity: Standard
Applicable for: Wind River Linux 7
Component/s: Userspace

Description

Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted bzip2 file, related to block ends set to before the start of the block.  

Other Downloads


CVEs


Live chat
Online