Jump to content
Sign in to follow this  

Advisories MDVSA-2010:185: bzip2

Recommended Posts

An integer overflow has been found and corrected in bzip2 which could

be exploited by using a specially crafted bz2 file and cause a denial

of service attack (CVE-2010-0405).


Additionally clamav has been upgraded to 0.96.2 and has been patched

for this issue. perl-Compress-Bzip2 in MES5 has been linked against

the system bzip2 library to resolv this issue.


Packages for 2008.0 and 2009.0 are provided as of the Extended

Maintenance Program. Please visit this link to learn more:



The updated packages have been patched to correct this issue.

Share this post

Link to post
Share on other sites
This topic is now closed to further replies.
Sign in to follow this  

  • Create New...