Bug 2482704 (CVE-2026-42250)

Summary: CVE-2026-42250 bzip2: bzip2: Denial of Service in bzip2recover via a specially crafted file
Product: [Other] Security Response Reporter: OSIDB Bzimport <bzimport>
Component: vulnerabilityAssignee: Product Security <prodsec-ir-bot>
Status: NEW --- QA Contact:
Severity: medium Docs Contact:
Priority: medium    
Version: unspecifiedCC: anpicker, anthomas, aprice, bdettelb, bparees, brasmith, cochase, dbosanac, derez, doconnor, dranck, dschmidt, ehelms, erezende, ggainey, hasun, jfula, jkoehler, jlanda, jowilson, jreimann, jsamir, juwatts, kshier, lphiri, mdessi, mhulan, mjw, mrizzi, nmoumoul, nyancey, oezr, ometelka, osousa, pcattana, pcreech, ptisnovs, rchan, rekumar, rhel-process-autobot, simaishi, smallamp, smcdonal, stcannon, syedriko, teagle, tmalecek, vvoronko, watson-tool-maintainers, xdharmai, yguenane
Target Milestone: ---Keywords: Security
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: ---
Doc Text:
A flaw was found in bzip2. The bzip2recover utility contains an off-by-one error that allows a local attacker to cause an out-of-bounds write to a global buffer by processing a specially crafted file. This memory corruption can lead to a crash, resulting in a Denial of Service (DoS).
Story Points: ---
Clone Of: Environment:
Last Closed: Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description OSIDB Bzimport 2026-05-28 15:01:57 UTC
bzip2 contains an off‑by‑one error in the bzip2recover utility. When processing a specially crafted file, the application performs an out‑of‑bounds write to a global buffer, resulting in memory corruption and a crash (denial of service).

This issue was fixed in bzip2 version 1.0.9