Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted bzip2 file, related to block ends set to before the start of the block.
{
"versions": [
{
"introduced": "3.7.0"
},
{
"fixed": "3.7.13"
},
{
"introduced": "3.8.0"
},
{
"fixed": "3.8.13"
},
{
"introduced": "3.9.0"
},
{
"fixed": "3.9.11"
},
{
"introduced": "3.10.0"
},
{
"fixed": "3.10.3"
}
]
}