oss-sec mailing list archives
bzip2 CVE-2010-0405 integer overflow
From: Solar Designer <solar () openwall com>
Date: Tue, 21 Sep 2010 15:33:01 +0400
Hi, Here's some analysis of this vulnerability and the changes in 1.0.6: http://xorl.wordpress.com/2010/09/21/cve-2010-0405-bzip2-integer-overflow/ No conclusion on whether it is exploitable or not (and in what cases), yet maybe this will save someone a few minutes. Alexander
Current thread:
- bzip2 CVE-2010-0405 integer overflow Solar Designer (Sep 21)