QID 671089
Date Published: 2021-11-29
QID 671089: EulerOS Security Update for bzip2 (EulerOS-SA-2019-2560)
Bzip2 is a freely available, patent-free, high quality data compressor.
Bzip2 compresses files to within 10 to 15 percent of the capabilities of the best techniques available.
However, bzip2 has the added benefit of being approximately two times faster at compression and six times faster at decompression than those techniques.
Bzip2 is not the fastest compression utility, but it does strike a balance between speed and compression capability.
Install bzip2 if you need a compression utility.
Security fix(es): use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted bzip2 file, related to block ends set to before the start of the block.(cve-2016-3189)
Note: The preceding description block is extracted directly from the security advisory. Using automation, we have attempted to clean and format it as much as possible without introducing additional issues.
An arbitrary attacker may exploit this vulnerability to compromise the system.
CVEs related to QID 671089
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| EulerOS-SA-2019-2560 | EulerOS V2.0SP3 |
|