CVE-2009-2624
published 2010-01-29CVE-2009-2624: The huft_build function in inflate.c in gzip before 1.3.13 creates a hufts (aka huffman) table that is too small, which allows remote attackers to cause a…
PriorityP431medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
4.18%
89.8th percentile
The huft_build function in inflate.c in gzip before 1.3.13 creates a hufts (aka huffman) table that is too small, which allows remote attackers to cause a denial of service (application crash or infinite loop) or possibly execute arbitrary code via a crafted archive. NOTE: this issue is caused by a CVE-2006-4334 regression.
Affected
20 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | gzip | < gzip 1.3.12-8 (bookworm) | gzip 1.3.12-8 (bookworm) |
| gnu | gzip | <= 1.3.12 | — |
| gnu | gzip | — | — |
| gnu | gzip | — | — |
| gnu | gzip | — | — |
| gnu | gzip | — | — |
| gnu | gzip | — | — |
| gnu | gzip | — | — |
| gnu | gzip | — | — |
| gnu | gzip | — | — |
| gnu | gzip | — | — |
| gnu | gzip | — | — |
| gnu | gzip | — | — |
| gnu | gzip | — | — |
| gnu | gzip | — | — |
| gnu | gzip | — | — |
| gzip | gzip | >= 0 < 1.3.12-8 | 1.3.12-8 |
| gzip | gzip | >= 0 < 1.3.12-8 | 1.3.12-8 |
| gzip | gzip | >= 0 < 1.3.12-8 | 1.3.12-8 |
| gzip | gzip | >= 0 < 1.3.12-8 | 1.3.12-8 |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv5.0MEDIUM
vendor_ubuntu6.8MEDIUM
vendor_debian5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-fx63-8q93-pfr5: The huft_build function in inflate
ghsa_unreviewed·2022-05-02·CVSS 5.0
CVE-2009-2624 [MEDIUM] CWE-20 GHSA-fx63-8q93-pfr5: The huft_build function in inflate
The huft_build function in inflate.c in gzip before 1.3.13 creates a hufts (aka huffman) table that is too small, which allows remote attackers to cause a denial of service (application crash or infinite loop) or possibly execute arbitrary code via a crafted archive. NOTE: this issue is caused by a CVE-2006-4334 regression.
OSV
CVE-2009-2624: The huft_build function in inflate
osv·2010-01-29·CVSS 5.0
CVE-2009-2624 [MEDIUM] CVE-2009-2624: The huft_build function in inflate
The huft_build function in inflate.c in gzip before 1.3.13 creates a hufts (aka huffman) table that is too small, which allows remote attackers to cause a denial of service (application crash or infinite loop) or possibly execute arbitrary code via a crafted archive. NOTE: this issue is caused by a CVE-2006-4334 regression.
Ubuntu
gzip vulnerabilities
vendor_ubuntu·2010-01-20·CVSS 6.8
CVE-2009-2624 [MEDIUM] gzip vulnerabilities
Title: gzip vulnerabilities
Summary: gzip vulnerabilities
It was discovered that gzip incorrectly handled certain malformed
compressed files. If a user or automated system were tricked into opening a
specially crafted gzip file, an attacker could cause gzip to crash or
possibly execute arbitrary code with the privileges of the user invoking
the program. (CVE-2009-2624)
Aki Helin discovered that gzip incorrectly handled certain malformed
files compressed with the Lempel–Ziv–Welch (LZW) algorithm. If a user or
automated system were tricked into opening a specially crafted gzip file,
an attacker could cause gzip to crash or possibly execute arbitrary code
with the privileges of the user invoking the program. (CVE-2010-0001)
Instructions: In general, a standard system upgrade is sufficient
Red Hat
gzip: Missing input sanitation by decompressing dynamic Huffman code blocks
vendor_redhat·2010-01-20·CVSS 5.0
CVE-2009-2624 [MEDIUM] gzip: Missing input sanitation by decompressing dynamic Huffman code blocks
gzip: Missing input sanitation by decompressing dynamic Huffman code blocks
The huft_build function in inflate.c in gzip before 1.3.13 creates a hufts (aka huffman) table that is too small, which allows remote attackers to cause a denial of service (application crash or infinite loop) or possibly execute arbitrary code via a crafted archive. NOTE: this issue is caused by a CVE-2006-4334 regression.
Statement: Not vulnerable. This issue did not affect the versions of gzip as shipped with Red Hat Enterprise Linux 3, 4, or 5. It was corrected in the versions of gzip as shipped with Red Hat Enterprise Linux 6.0 and later.
Debian
CVE-2009-2624: gzip - The huft_build function in inflate.c in gzip before 1.3.13 creates a hufts (aka ...
vendor_debian·2009·CVSS 5.0
CVE-2009-2624 [MEDIUM] CVE-2009-2624: gzip - The huft_build function in inflate.c in gzip before 1.3.13 creates a hufts (aka ...
The huft_build function in inflate.c in gzip before 1.3.13 creates a hufts (aka huffman) table that is too small, which allows remote attackers to cause a denial of service (application crash or infinite loop) or possibly execute arbitrary code via a crafted archive. NOTE: this issue is caused by a CVE-2006-4334 regression.
Scope: local
bookworm: resolved (fixed in 1.3.12-8)
bullseye: resolved (fixed in 1.3.12-8)
forky: resolved (fixed in 1.3.12-8)
sid: resolved (fixed in 1.3.12-8)
trixie: resolved (fixed in 1.3.12-8)
No detection rules found.
No public exploits indexed.
http://article.gmane.org/gmane.comp.gnu.gzip.bugs/258http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507263http://git.savannah.gnu.org/cgit/gzip.git/commit/?id=39a362ae9d9b007473381dba5032f4dfc1744cf2http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.htmlhttp://secunia.com/advisories/38132http://secunia.com/advisories/38223http://secunia.com/advisories/38232http://support.apple.com/kb/HT4435http://www.debian.org/security/2010/dsa-1974http://www.mandriva.com/security/advisories?name=MDVSA-2010:020http://www.ubuntu.com/usn/USN-889-1http://www.vupen.com/english/advisories/2010/0185https://bugzilla.redhat.com/show_bug.cgi?id=514711http://article.gmane.org/gmane.comp.gnu.gzip.bugs/258http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507263http://git.savannah.gnu.org/cgit/gzip.git/commit/?id=39a362ae9d9b007473381dba5032f4dfc1744cf2http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.htmlhttp://secunia.com/advisories/38132http://secunia.com/advisories/38223http://secunia.com/advisories/38232http://support.apple.com/kb/HT4435http://www.debian.org/security/2010/dsa-1974http://www.mandriva.com/security/advisories?name=MDVSA-2010:020http://www.ubuntu.com/usn/USN-889-1http://www.vupen.com/english/advisories/2010/0185https://bugzilla.redhat.com/show_bug.cgi?id=514711
2010-01-29
Published