Skip to content
Noroxi

bzip records

11 published records for vendor bzip.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
72.7%
Median publish → KEV
No record has entered KEV

All records

11 records
  • BZ2_decompress in decompress.c in bzip2 through 1.0.6 has an out-of-bounds write when there are many selectors.

    CriticalCVSS 9.8No exploitEPSS 8%

    bzip · bzip2Jun 19, 2019

  • CVE-2016-3189
    31Monitor

    Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted bzip2

    MediumCVSS 6.5No exploitEPSS 16%

    bzip · bzip2Jun 30, 2016

  • CVE-2005-1260
    22Monitor

    bzip2 allows remote attackers to cause a denial of service (hard drive consumption) via a crafted bzip2 file that causes an infinite loop (a

    MediumCVSS 5.0No exploitEPSS 6%

    bzip · bzip2May 19, 2005

  • CVE-2010-0405
    21Monitor

    Integer overflow in the BZ2_decompress function in decompress.c in bzip2 and libbzip2 before 1.0.6 allows context-dependent attackers to cau

    MediumCVSS 5.1No exploitEPSS 3%

    bzip · bzip2Sep 28, 2010

  • CVE-2002-0759
    20Monitor

    bzip2 before 1.0.2 in FreeBSD 4.5 and earlier, OpenLinux 3.1 and 3.1.1, and possibly other operating systems, does not use the O_EXCL flag t

    MediumCVSS 5.0No exploitEPSS 1%

    bzip · bzip2Aug 12, 2002

  • CVE-2008-1372
    18Monitor

    bzlib.c in bzip2 before 1.0.5 allows user-assisted remote attackers to cause a denial of service (crash) via a crafted file that triggers a

    MediumCVSS 4.3No exploitEPSS 5%

    bzip · bzip2Mar 18, 2008

  • CVE-2009-1884
    18Monitor

    Off-by-one error in the bzinflate function in Bzip2.xs in the Compress-Raw-Bzip2 module before 2.018 for Perl allows context-dependent attac

    MediumCVSS 4.3No exploitEPSS 3%

    bzip · compress-raw-bzip2Aug 19, 2009

  • CVE-2011-4089
    18Monitor

    The bzexe command in bzip2 1.0.5 and earlier generates compressed executables that do not properly handle temporary files during extraction,

    MediumCVSS 4.6Proof of conceptEPSS 1%

    bzip · bzip2Apr 16, 2014

  • CVE-2005-0953
    14Monitor

    Race condition in bzip2 1.0.2 and earlier allows local users to modify permissions of arbitrary files via a hard link attack on a file while

    LowCVSS 3.7No exploitEPSS 0%

    bzip · bzip2May 2, 2005

  • bzip2 before 1.0.2 in FreeBSD 4.5 and earlier, OpenLinux 3.1 and 3.1.1, and possibly systems, uses the permissions of symbolic links instead

    LowCVSS 2.1No exploitEPSS 0%

    bzip · bzip2Aug 12, 2002

  • Race condition in bzip2 before 1.0.2 in FreeBSD 4.5 and earlier, OpenLinux 3.1 and 3.1.1, and possibly other operating systems, decompresses

    LowCVSS 1.2No exploitEPSS 0%

    bzip · bzip2Aug 12, 2002