Oval Definition:
oval:org.mitre.oval:def:22240
Revision Date
:
2014-05-26
Version
:
13
Title
:
ELSA-2008:0893: bzip2 security update (Moderate)
Description
:
bzlib.c in bzip2 before 1.0.5 allows user-assisted remote attackers to cause a denial of service (crash) via a crafted file that triggers a buffer over-read, as demonstrated by the PROTOS GENOME test suite for Archive Formats.
Family
:
unix
Class
:
patch
Status
:
ACCEPTED
Reference(s)
:
CVE-2008-1372
ELSA-2008:0893-01
Platform(s)
:
Oracle Linux 5
Product(s)
:
bzip2
Definition Synopsis
Oracle Linux 5.x
AND
rpm test
bzip2-devel is earlier than 0:1.0.3-4.el5_2
OR
bzip2-libs is earlier than 0:1.0.3-4.el5_2
OR
bzip2 is earlier than 0:1.0.3-4.el5_2
BACK