Wind River Support Network


LIN5-21727 : Security Advisory - bzip2 - CVE-2016-3189

Created: Jul 4, 2016    Updated: May 29, 2018
Resolved Date: Aug 16, 2016
Previous ID: LIN6-11508
Found In Version:
Fix Version:
Severity: Standard
Applicable for: Wind River Linux 5
Component/s: Userspace


Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted bzip2 file, related to block ends set to before the start of the block. 

Other Downloads

Live chat