VYPR

rpm package

suse/bzip2&distro=SUSE Linux Enterprise Server 12 SP2-LTSS

pkg:rpm/suse/bzip2&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-LTSS

Vulnerabilities (2)

  • CVE-2019-12900Jun 19, 2019
    affected < 1.0.6-30.5.1fixed 1.0.6-30.5.1

    BZ2_decompress in decompress.c in bzip2 through 1.0.6 has an out-of-bounds write when there are many selectors.

  • CVE-2016-3189MedJun 30, 2016
    affected < 1.0.6-30.5.1fixed 1.0.6-30.5.1

    Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted bzip2 file, related to block ends set to before the start of the block.