GHSA-9r29-3vrx-4537Medium

bzip2 contains an off‑by‑one error in the bzip2recover utility. When processing a specially...

Published
May 28, 2026
Last Modified
May 28, 2026

🔗 CVE IDs covered (1)

📋 Description

bzip2 contains an off‑by‑one error in the bzip2recover utility. When processing a specially crafted file, the application performs an out‑of‑bounds write to a global buffer, resulting in memory corruption and a crash (denial of service).

This issue was fixed in bzip2 version 1.0.9

🔗 References (4)