Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:20599
HistoryJun 25, 2019 - 2:31 a.m.

Out-of-bounds Write

2019-06-2502:31:58
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
16

0.02 Low

EPSS

Percentile

88.9%

bzip2 is vulnerable to an out-of-bounds write. The vulnerability can be triggered when an attacker passes a maliciously compressed file to the BZ2_decompress function in decompress.c, causing the nSelector variable to go out of range and write to an invalid memory space.

CPENameOperatorVersion
bzip2le1.0.6.11
bzip2le1.0.6.11

References