CVE-2016-3189
Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted bzip2 file, related to block ends set to before the start of the block.
- Bzip bzip2
- = 1.0.6
- Fix
- Available
- CVSS 3.1
- 6.5 MEDIUM
- EPSS
- 15.7% (97th percentile)
- Weakness
- CWE-416
- NVD status
- Modified
- Published
- 2016-06-30
CVE-2016-3189 at NVD
1 known exploit for CVE-2016-3189
Proof-of-concept code and exploit modules indexed by Sploitus