Ghostwire

CVE-2026-42250: bzip2 contains an off‑by‑one error in the bzip2recover utility. When processing a specially crafted file, the...

UNKNOWN CVSS 0.0

Published: May 28, 2026 | Last Modified: May 28, 2026

Description

bzip2 contains an off‑by‑one error in the bzip2recover utility. When processing a specially crafted file, the application performs an out‑of‑bounds write to a global buffer, resulting in memory corruption and a crash (denial of service). This issue was fixed in bzip2 version 1.0.9

Ghostwire Analysis — What This Means Practically

This analysis is generated by Ghostwire from NVD, CISA KEV, EPSS, and open-source intelligence data. Verify findings through primary sources before acting.

Security Coverage (2 articles)

References