BZ2_decompress in decompress.c in bzip2 through 1.0.6 has an out-of-bounds write when there are many selectors.
http://lists.opensuse.org/opensuse-security-announce/2019-07/msg00040.html
http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00050.html
http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00078.html
http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00000.html
http://packetstormsecurity.com/files/153644/Slackware-Security-Advisory-bzip2-Updates.html
http://packetstormsecurity.com/files/153957/FreeBSD-Security-Advisory-FreeBSD-SA-19-18.bzip2.html
https://gitlab.com/federicomenaquintero/bzip2/commit/74de1e2e6ffc9d51ef9824db71a8ffee5962cdbc
https://lists.apache.org/thread.html/[email protected]%3Cusers.kafka.apache.org%3E
https://lists.debian.org/debian-lts-announce/2019/06/msg00021.html
https://lists.debian.org/debian-lts-announce/2019/07/msg00014.html
https://lists.debian.org/debian-lts-announce/2019/10/msg00012.html
https://lists.debian.org/debian-lts-announce/2019/10/msg00018.html
https://seclists.org/bugtraq/2019/Aug/4
https://seclists.org/bugtraq/2019/Jul/22
https://security.FreeBSD.org/advisories/FreeBSD-SA-19:18.bzip2.asc
https://support.f5.com/csp/article/K68713584?utm_source=f5support&utm_medium=RSS
https://usn.ubuntu.com/4038-1/
https://usn.ubuntu.com/4038-2/
https://usn.ubuntu.com/4146-1/
Source: MITRE
Published: 2019-06-19
Updated: 2020-10-20
Type: CWE-787
Base Score: 7.5
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P
Impact Score: 6.4
Exploitability Score: 10
Severity: HIGH
Base Score: 9.8
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Impact Score: 5.9
Exploitability Score: 3.9
Severity: CRITICAL
OR
cpe:2.3:a:bzip:bzip2:*:*:*:*:*:*:*:* versions up to 1.0.6 (inclusive)
ID | Name | Product | Family | Severity |
---|---|---|---|---|
145338 | openSUSE Security Update : clamav (openSUSE-2020-2268) | Nessus | SuSE Local Security Checks | high |
145307 | openSUSE Security Update : clamav (openSUSE-2020-2276) | Nessus | SuSE Local Security Checks | high |
144579 | SUSE SLES12 Security Update : clamav (SUSE-SU-2020:3918-1) | Nessus | SuSE Local Security Checks | high |
144237 | SUSE SLED15 / SLES15 Security Update : clamav (SUSE-SU-2020:3790-1) | Nessus | SuSE Local Security Checks | high |
143705 | SUSE SLES12 Security Update : clamav (SUSE-SU-2020:3729-1) | Nessus | SuSE Local Security Checks | high |
141829 | Oracle Database Server Multiple Vulnerabilities (Oct 2020 CPU) | Nessus | Databases | high |
131540 | openSUSE Security Update : clamav (openSUSE-2019-2597) | Nessus | SuSE Local Security Checks | high |
131538 | openSUSE Security Update : clamav (openSUSE-2019-2595) | Nessus | SuSE Local Security Checks | high |
131385 | SUSE SLED12 / SLES12 Security Update : clamav (SUSE-SU-2019:3066-1) | Nessus | SuSE Local Security Checks | high |
131305 | SUSE SLED15 / SLES15 Security Update : clamav (SUSE-SU-2019:3053-1) | Nessus | SuSE Local Security Checks | high |
129799 | Debian DLA-1953-2 : clamav regression update | Nessus | Debian Local Security Checks | high |
129556 | Ubuntu 16.04 LTS / 18.04 LTS / 19.04 : clamav vulnerabilities (USN-4146-1) | Nessus | Ubuntu Local Security Checks | high |
129250 | EulerOS 2.0 SP3 : bzip2 (EulerOS-SA-2019-2057) | Nessus | Huawei Local Security Checks | high |
128925 | EulerOS Virtualization for ARM 64 3.0.2.0 : bzip2 (EulerOS-SA-2019-1920) | Nessus | Huawei Local Security Checks | high |
128889 | EulerOS 2.0 SP2 : bzip2 (EulerOS-SA-2019-1837) | Nessus | Huawei Local Security Checks | high |
128437 | Fedora 29 : clamav (2019-aabcb53ec6) | Nessus | Fedora Local Security Checks | high |
128174 | Photon OS 2.0: Bzip2 PHSA-2019-2.0-0168 | Nessus | PhotonOS Local Security Checks | high |
128137 | FreeBSD : clamav -- multiple vulnerabilities (dbd1f627-c43b-11e9-a923-9c5c8e75236a) | Nessus | FreeBSD Local Security Checks | high |
128132 | Fedora 30 : clamav (2019-5c2dc50262) | Nessus | Fedora Local Security Checks | high |
128010 | openSUSE Security Update : bzip2 (openSUSE-2019-1918) | Nessus | SuSE Local Security Checks | high |
127753 | SUSE SLED12 / SLES12 Security Update : bzip2 (SUSE-SU-2019:2013-1) | Nessus | SuSE Local Security Checks | high |
127747 | SUSE SLED15 / SLES15 Security Update : bzip2 (SUSE-SU-2019:2004-1) | Nessus | SuSE Local Security Checks | high |
127019 | EulerOS 2.0 SP8 : bzip2 (EulerOS-SA-2019-1782) | Nessus | Huawei Local Security Checks | high |
126985 | SUSE SLED12 / SLES12 Security Update : bzip2 (SUSE-SU-2019:1955-1) | Nessus | SuSE Local Security Checks | high |
126933 | EulerOS 2.0 SP5 : bzip2 (EulerOS-SA-2019-1757) | Nessus | Huawei Local Security Checks | high |
126911 | openSUSE Security Update : bzip2 (openSUSE-2019-1781) | Nessus | SuSE Local Security Checks | high |
126737 | SUSE SLED15 / SLES15 Security Update : bzip2 (SUSE-SU-2019:1846-1) | Nessus | SuSE Local Security Checks | high |
126685 | Slackware 14.0 / 14.1 / 14.2 / current : bzip2 (SSA:2019-195-01) | Nessus | Slackware Local Security Checks | high |
126471 | Photon OS 1.0: Bzip2 PHSA-2019-1.0-0242 | Nessus | PhotonOS Local Security Checks | high |
126364 | FreeBSD : bzip2 -- multiple issues (4b6cb45d-881e-447a-a4e0-c97a954ea758) | Nessus | FreeBSD Local Security Checks | high |
126305 | Ubuntu 16.04 LTS / 18.04 LTS / 18.10 / 19.04 : bzip2 vulnerabilities (USN-4038-1) | Nessus | Ubuntu Local Security Checks | high |
126221 | Debian DLA-1833-2 : bzip2 regression update | Nessus | Debian Local Security Checks | high |