CVE-2026-42250

unknown
EUVD alias: EUVD-2026-32898
Published 2026-05-28 · Modified 2026-05-28
CVSS v3
CVSS v4 NEW
5.1
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
VIR risk

Description

bzip2 contains an off‑by‑one error in the bzip2recover utility. When processing a specially crafted file, the application performs an out‑of‑bounds write to a global buffer, resulting in memory corruption and a crash (denial of service). This issue was fixed in bzip2 patch 35d122a3df8b0cc4082a4d89fdc6ee99f375fe67

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

Mitigation details

Source: Debian Security Tracker · View original ↗ · DFSG

CVE-2026-42250 NameCVE-2026-42250 Descriptionbzip2 contains an off‑by‑one error in the bzip2recover utility. When processing a specially crafted file, the application performs an out‑of‑bounds write to a global buffer, resulting in memory corruption and a crash (denial of service). This issue was fixed in bzip2 patch 35d122a3df8b0cc4082a4d89fdc6ee99f375fe67 SourceCVE (at NVD; CERT, ENISA, LWN,…

CVE-2026-42250

NameCVE-2026-42250
Descriptionbzip2 contains an off‑by‑one error in the bzip2recover utility. When processing a specially crafted file, the application performs an out‑of‑bounds write to a global buffer, resulting in memory corruption and a crash (denial of service). This issue was fixed in bzip2 patch 35d122a3df8b0cc4082a4d89fdc6ee99f375fe67
SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
Debian Bugs1138255

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
bzip2 (PTS)bullseye1.0.8-4vulnerable
bookworm1.0.8-5vulnerable
forky, sid, trixie1.0.8-6vulnerable

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
bzip2source(unstable)(unfixed)1138255

Notes

[trixie] - bzip2 <no-dsa> (Minor issue)
[bookworm] - bzip2 <no-dsa> (Minor issue)
https://inbox.sourceware.org/bzip2-devel/20260528145407.293768-1-mark@klomp.org/
Fixed by: https://sourceware.org/cgit/bzip2/commit/?id=35d122a3df8b0cc4082a4d89fdc6ee99f375fe67

Home - Debian Security - Source (Git)

Apply commands

text fix
Notes
[trixie] - bzip2 <no-dsa> (Minor issue)[bookworm] - bzip2 <no-dsa> (Minor issue)https://inbox.sourceware.org/bzip2-devel/20260528145407.293768-1-mark@klomp.org/Fixed by: https://sourceware.org/cgit/bzip2/commit/?id=35d122a3df8b0cc4082a4d89fdc6ee99f375fe67

OS impact

debian Debian Affected 5 releases
VersionStatusFixed in
trixie Affected
sid Affected
forky Affected
bullseye Affected
bookworm Affected
suse SUSE Affected 1 release
VersionStatusFixed in
Affected
windows Windows Affected 1 release
VersionStatusFixed in
Affected

References

CWEs

CWE-787

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.