Перейти к содержимому
Noroxi

Записи bzip

11 опубликованных записей вендора bzip.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
1
С записью об исправлении
72,7 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 19

Столбик: всего · тёмная часть: CISA KEV.

Повторяющиеся классы

Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

CWE

Все записи

11 записей
  • CVE-2019-12900
    41В плане

    BZ2_decompress in decompress.c in bzip2 through 1.0.6 has an out-of-bounds write when there are many selectors.

    КритическаяCVSS 9,8Эксплойта нетEPSS 8 %

    bzip · bzip219 июн. 2019 г.

  • CVE-2016-3189
    31Наблюдать

    Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted bzip2

    СредняяCVSS 6,5Эксплойта нетEPSS 16 %

    bzip · bzip230 июн. 2016 г.

  • CVE-2005-1260
    22Наблюдать

    bzip2 allows remote attackers to cause a denial of service (hard drive consumption) via a crafted bzip2 file that causes an infinite loop (a

    СредняяCVSS 5,0Эксплойта нетEPSS 6 %

    bzip · bzip219 мая 2005 г.

  • CVE-2010-0405
    21Наблюдать

    Integer overflow in the BZ2_decompress function in decompress.c in bzip2 and libbzip2 before 1.0.6 allows context-dependent attackers to cau

    СредняяCVSS 5,1Эксплойта нетEPSS 3 %

    bzip · bzip228 сент. 2010 г.

  • CVE-2002-0759
    20Наблюдать

    bzip2 before 1.0.2 in FreeBSD 4.5 and earlier, OpenLinux 3.1 and 3.1.1, and possibly other operating systems, does not use the O_EXCL flag t

    СредняяCVSS 5,0Эксплойта нетEPSS 1 %

    bzip · bzip212 авг. 2002 г.

  • CVE-2008-1372
    18Наблюдать

    bzlib.c in bzip2 before 1.0.5 allows user-assisted remote attackers to cause a denial of service (crash) via a crafted file that triggers a

    СредняяCVSS 4,3Эксплойта нетEPSS 5 %

    bzip · bzip218 мар. 2008 г.

  • CVE-2009-1884
    18Наблюдать

    Off-by-one error in the bzinflate function in Bzip2.xs in the Compress-Raw-Bzip2 module before 2.018 for Perl allows context-dependent attac

    СредняяCVSS 4,3Эксплойта нетEPSS 3 %

    bzip · compress-raw-bzip219 авг. 2009 г.

  • CVE-2011-4089
    18Наблюдать

    The bzexe command in bzip2 1.0.5 and earlier generates compressed executables that do not properly handle temporary files during extraction,

    СредняяCVSS 4,6Proof of conceptEPSS 1 %

    bzip · bzip216 апр. 2014 г.

  • CVE-2005-0953
    14Наблюдать

    Race condition in bzip2 1.0.2 and earlier allows local users to modify permissions of arbitrary files via a hard link attack on a file while

    НизкаяCVSS 3,7Эксплойта нетEPSS 0 %

    bzip · bzip22 мая 2005 г.

  • CVE-2002-0761
    8Наблюдать

    bzip2 before 1.0.2 in FreeBSD 4.5 and earlier, OpenLinux 3.1 and 3.1.1, and possibly systems, uses the permissions of symbolic links instead

    НизкаяCVSS 2,1Эксплойта нетEPSS 0 %

    bzip · bzip212 авг. 2002 г.

  • CVE-2002-0760
    4Наблюдать

    Race condition in bzip2 before 1.0.2 in FreeBSD 4.5 and earlier, OpenLinux 3.1 and 3.1.1, and possibly other operating systems, decompresses

    НизкаяCVSS 1,2Эксплойта нетEPSS 0 %

    bzip · bzip212 авг. 2002 г.