bzip2 allows remote attackers to cause a denial of service (hard drive consumption) via a crafted bzip2 file that causes an infinite loop (a.k.a "decompression bomb").
| Software | From | Fixed in |
|---|---|---|
| bzip / bzip2 | - | 1.0.3 |
| canonical / ubuntu_linux | 4.10 | 4.10.x |
| canonical / ubuntu_linux | 5.04 | 5.04.x |
| debian / debian_linux | 3.1 | 3.1.x |
| debian / debian_linux | 3.0 | 3.0.x |
| apple / mac_os_x | - | 10.4.11 |