CentOS Update for bzip2 CESA-2008:0893-01 centos2 i386

Solution
Please Install the Updated Packages.
Insight
Bzip2 is a freely available, high-quality data compressor. It provides both stand-alone compression and decompression utilities, as well as a shared library for use with other programs. A buffer over-read flaw was discovered in the bzip2 decompression routine. This issue could cause an application linked against the libbz2 library to crash when decompressing malformed archives. (CVE-2008-1372) Users of bzip2 should upgrade to these updated packages, which contain a backported patch to resolve this issue.
Affected
bzip2 on CentOS 2
References