CVE-2005-1260
Summary
| CVE | CVE-2005-1260 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2005-05-19 04:00:00 UTC |
| Updated | 2020-11-13 17:07:00 UTC |
| Description | bzip2 allows remote attackers to cause a denial of service (hard drive consumption) via a crafted bzip2 file that causes an infinite loop (a.k.a "decompression bomb"). |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| APPLE-SA-2007-11-14 Mac OS X v10.4.11 and Security Update 2007-008 |
APPLE |
lists.apple.com |
Mailing List, Third Party Advisory |
| US-CERT Technical Cyber Security Alert TA07-319A -- Apple Updates for Multiple Vulnerabilities |
CERT |
www.us-cert.gov |
Third Party Advisory, US Government Resource |
| Repository / Oval Repository |
OVAL |
oval.cisecurity.org |
Third Party Advisory |
| Webmail - OVH |
VUPEN |
www.vupen.com |
Permissions Required |
| Apple Mac OS X v10.4.11 2007-008 Multiple Security Vulnerabilities |
BID |
www.securityfocus.com |
Third Party Advisory, VDB Entry |
| 200191 |
SUNALERT |
sunsolve.sun.com |
Broken Link |
| Apple Mac OS X Security Update Fixes Multiple Vulnerabilities - Advisories - Secunia |
SECUNIA |
secunia.com |
Third Party Advisory |
| Repository / Oval Repository |
OVAL |
oval.cisecurity.org |
Third Party Advisory |
| bzip2 Remote Denial of Service Vulnerability |
BID |
www.securityfocus.com |
Third Party Advisory, VDB Entry |
| rhn.redhat.com | Red Hat Support |
REDHAT |
www.redhat.com |
Third Party Advisory |
| Sun Solaris bzip2 Multiple Vulnerabilities - Advisories - Secunia |
SECUNIA |
secunia.com |
Third Party Advisory |
| USN-127-1: bzip2 vulnerabilities | Ubuntu security notices |
UBUNTU |
usn.ubuntu.com |
Third Party Advisory |
| Secunia - Advisories - bzip2 Decompression Denial of Service Vulnerability |
SECUNIA |
secunia.com |
Third Party Advisory |
| The Fedora Legacy Project |
FEDORA |
www.fedoralegacy.org |
Permissions Required |
| Debian -- Security Information -- DSA-741-1 bzip2 |
DEBIAN |
www.debian.org |
Third Party Advisory |
| SGI Advanced Linux Environment Multiple Updates - Advisories - Secunia |
SECUNIA |
secunia.com |
Third Party Advisory |
| #200191: Two Security Vulnerabilities in the bzip2(1) Command may Allow the Permissions of Arbitrary Files to be Modified or Allow for Arbitrarily Large Files to be Created |
SUNALERT |
sunsolve.sun.com |
Broken Link |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH |
VUPEN |
www.vupen.com |
Permissions Required |
| 20060301-01-U |
SGI |
patches.sgi.com |
Broken Link |
| About the security content of Mac OS X 10.4.11 and Security Update 2007-008 |
CONFIRM |
docs.info.apple.com |
Broken Link |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 900258 CBL-Mariner Linux Security Update for bzip2 1.0.6