First published: Tue Aug 18 2009(Updated: )
Off-by-one error in the bzinflate function in Bzip2.xs in the Compress-Raw-Bzip2 module before 2.018 for Perl allows context-dependent attackers to cause a denial of service (application hang or crash) via a crafted bzip2 compressed stream that triggers a buffer overflow, a related issue to CVE-2009-1391.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Bzip Compress-raw-bzip2 | <=2.017 | |
Bzip Compress-raw-bzip2 | =2.0.00_10 | |
Bzip Compress-raw-bzip2 | =2.0.00_12 | |
Bzip Compress-raw-bzip2 | =2.0.00_14 | |
Bzip Compress-raw-bzip2 | =2.0.01 | |
Bzip Compress-raw-bzip2 | =2.0.02 | |
Bzip Compress-raw-bzip2 | =2.0.03 | |
Bzip Compress-raw-bzip2 | =2.0.05 | |
Bzip Compress-raw-bzip2 | =2.0.06 | |
Bzip Compress-raw-bzip2 | =2.0.08 | |
Bzip Compress-raw-bzip2 | =2.0.09 | |
Bzip Compress-raw-bzip2 | =2.010 | |
Bzip Compress-raw-bzip2 | =2.011 | |
Bzip Compress-raw-bzip2 | =2.012 | |
Bzip Compress-raw-bzip2 | =2.014 | |
Bzip Compress-raw-bzip2 | =2.015 | |
Perl Perl |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.