Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-8922

Опубликовано: 11 нояб. 2024
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2024-8922: bzip2 security update (LOW)

[1.0.6-27.0.1]

  • CVE-2019-12900: Accept as many selectors as the file format allows [Orabug: 37266061]

[1.0.6-27]

  • Fixes out of bounds access in BZ2_decompress (RHEL-64929)

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

bzip2

1.0.6-27.0.1.el8_10

bzip2-devel

1.0.6-27.0.1.el8_10

bzip2-libs

1.0.6-27.0.1.el8_10

Oracle Linux x86_64

bzip2

1.0.6-27.0.1.el8_10

bzip2-devel

1.0.6-27.0.1.el8_10

bzip2-libs

1.0.6-27.0.1.el8_10

Связанные CVE

Связанные уязвимости

CVSS3: 9.8
ubuntu
почти 6 лет назад

BZ2_decompress in decompress.c in bzip2 through 1.0.6 has an out-of-bounds write when there are many selectors.

CVSS3: 4.4
redhat
7 месяцев назад

BZ2_decompress in decompress.c in bzip2 through 1.0.6 has an out-of-bounds write when there are many selectors.

CVSS3: 9.8
nvd
почти 6 лет назад

BZ2_decompress in decompress.c in bzip2 through 1.0.6 has an out-of-bounds write when there are many selectors.

CVSS3: 9.8
msrc
почти 5 лет назад

Описание отсутствует

CVSS3: 9.8
debian
почти 6 лет назад

BZ2_decompress in decompress.c in bzip2 through 1.0.6 has an out-of-bo ...