Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Slackware 12.0: SSA:2008-098-02 Critical: bzip2 DoS Threat

slackware
Calendar Grey April 7, 2008
Dist Slackware Esm H88
Gentoo publishes updated tar packages to fix a severe vulnerability. Update recommended for enhanced security and system reliability.
New bzip2 packages are available for Slackware 8.1, 9.0, 9.1, 10.0, 10.1, 10.2, 11.0, 12.0, and -current to fix a DoS issue

Summary

Here are the details from the Slackware 12.0 ChangeLog: patches/packages/bzip2-1.0.5-i486-1_slack12.0.tgz: Upgraded to bzip2-1.0.5. Previous versions of bzip2 contained a buffer overread error that could cause applications linked to libbz2 to crash, resulting in a denial of service. For more information, see: https://www.cve.org/CVERecord?id=CVE-2008-1372 (* Security fix *)

Where Find New Packages

HINT: Getting slow download speeds from ftp.slackware.com? Give slackware.osuosl.org a try. This is another primary FTP site for Slackware that can be considerably faster than downloading directly from ftp.slackware.com.
Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating additional FTP and rsync hosting to the Slackware project! :-)
Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you.
Updated package for Slackware 8.1:
Updated package for Slackware 9.0:
Updated package for Slackware 9.1:
Updated package for Slackware 10.0:
Updated package for Slackware 10.1:
Updated package for Slackware 10.2:
Updated package for Slackware 11.0:
Updated package for Slackware 12.0:
Updated package for Slackware -current:

MD5 Signatures

Slackware 8.1 package: cddf69b03404779b6d23a7d7604198c5 bzip2-1.0.5-i386-1_slack8.1.tgz
Slackware 9.0 package: 5e153b9606326c3c61ac0018c1e460b6 bzip2-1.0.5-i386-1_slack9.0.tgz
Slackware 9.1 package: 066bb2e9c00387f3cbf134ba0e973766 bzip2-1.0.5-i486-1_slack9.1.tgz
Slackware 10.0 package: 09dc74761b62f3ed1a12df70e1191dc3 bzip2-1.0.5-i486-1_slack10.0.tgz
Slackware 10.1 package: ab458a6b065dd2636623c01cdac41b21 bzip2-1.0.5-i486-1_slack10.1.tgz
Slackware 10.2 package: 9e082446dc0672f2f26b9200c1290ee3 bzip2-1.0.5-i486-1_slack10.2.tgz
Slackware 11.0 package: 730d057101b68e2f30f6f68b8eab25a8 bzip2-1.0.5-i486-1_slack11.0.tgz
Slackware 12.0 package: b8bcf145b4f28e5db65fc8f5e2cc4fe6 bzip2-1.0.5-i486-1_slack12.0.tgz
Slackware -current package: 3611aec2aab0ca7168865bcfd8187046 bzip2-1.0.5-i486-1.tgz

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Installation Instructions

Installation instructions: Upgrade the package as root: # upgradepkg bzip2-1.0.5-i486-1_slack12.0.tgz

Related News

Your message here