Use-after-free memory corruption in bzip2recover in bzip2 - CVE-2016-3189
Published: June 21, 2016 / Updated: July 8, 2016
bzip2
Detailed vulnerability description
The vulnerability allows a remote attacker to cause the target application to crash.
The vulnerability exists due to an use-after-free error in bzip2recover when handling bzip2 files. A remote unauthenticated attacker can send a specially crafted bzip2 archive and cause the target application to crash.
Successful exploitation of this vulnerability will result in denial of service.