CVE-2008-1372
EPSS 7.7%Published: 3/18/2008Modified: 4/28/2026
Also known as:DEBIAN-CVE-2008-1372
Description
bzlib.c in bzip2 before 1.0.5 allows user-assisted remote attackers to cause a denial of service (crash) via a crafted file that triggers a buffer over-read, as demonstrated by the PROTOS GENOME test suite for Archive Formats.
Affected packages (1)
- Debian/bzip2from 0, < 1.0.5-0.1