Jump to content

Advisories MDVSA-2010:185: bzip2


paul
 Share

Recommended Posts

An integer overflow has been found and corrected in bzip2 which could

be exploited by using a specially crafted bz2 file and cause a denial

of service attack (CVE-2010-0405).

 

Additionally clamav has been upgraded to 0.96.2 and has been patched

for this issue. perl-Compress-Bzip2 in MES5 has been linked against

the system bzip2 library to resolv this issue.

 

Packages for 2008.0 and 2009.0 are provided as of the Extended

Maintenance Program. Please visit this link to learn more:

http://store.mandriva.com/product_info.php?cPath=149&products_id=490

 

The updated packages have been patched to correct this issue.

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
 Share

×
×
  • Create New...