Wind River Support Network

HomeDefectsLIN5-21727
Fixed

LIN5-21727 : Security Advisory - bzip2 - CVE-2016-3189

Created: Jul 4, 2016    Updated: May 29, 2018
Resolved Date: Aug 16, 2016
Previous ID: LIN6-11508
Found In Version: 5.0.1.35
Fix Version: 5.0.1.38
Severity: Standard
Applicable for: Wind River Linux 5
Component/s: Userspace

Description

Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted bzip2 file, related to block ends set to before the start of the block. 

Other Downloads


Live chat
Online