Sploitus

CVE-2016-3189

1 known exploit for CVE-2016-3189

Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted bzip2 file, related to block ends set to before the start of the block.

Affected products
Alt Linux, Freebsd, Suse, Ubuntu, Bzip2
Bzip bzip2
= 1.0.6
Fix
Available
CVSS 3.1
6.5 MEDIUM
EPSS
15.7% (97th percentile)
Weakness
CWE-416
NVD status
Modified
Published
2016-06-30
CVE-2016-3189 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2016-3189

Proof-of-concept code and exploit modules indexed by Sploitus