lrzip - compression program with a very high compression ratio

A compression program that can achieve very high compression
ratios and speed when used with large files. It uses the combined
compression algorithms of zpaq and lzma for maximum compression, lzo
for maximum speed, and the long range redundancy reduction of rzip.
It is designed to scale with increases with RAM size, improving
compression further. A choice of either size or speed optimizations
allows for either better compression than even lzma can provide, or
better speed than gzip, but with bzip2 sized compression levels.


Install Howto

  1. Update the package index:
    # sudo apt-get update
  2. Install lrzip deb package:
    # sudo apt-get install lrzip




2018-05-29 - Laszlo Boszormenyi (GCS) <>
lrzip (0.631+git180528-1) unstable; urgency=high
* Git snapshot release to fix security issue:
- CVE-2018-11496: heap use after free in read_stream() .
2018-05-17 - Laszlo Boszormenyi (GCS) <>
lrzip (0.631+git180517-1) unstable; urgency=high
* Git snapshot release to fix security issues:
- CVE-2017-8842: divide-by-zero in bufRead::get() (closes: #863156),
- CVE-2017-8843: NULL pointer dereference in join_pthread()
(closes: #863155),
- CVE-2017-8844: heap-based buffer overflow write in read_1g()
(closes: #863153),
- CVE-2017-8845: invalid memory read in lzo_decompress_buf()
(closes: #863151),
- CVE-2017-8846: use-after-free in read_stream() (closes: #863150),
- CVE-2017-8847: NULL pointer dereference in bufRead::get()
(closes: #863145),
- CVE-2017-9928: stack buffer overflow in get_fileinfo() (closes: #866022),
- CVE-2017-9929: another stack buffer overflow in get_fileinfo()
(closes: #866020),
- CVE-2018-5650: infinite loop from crafted/corrupt archive in
unzip_match() (closes: #887065),
- CVE-2018-5747: use-after-free in ucompthread() (closes: #898451),
- CVE-2018-5786: infinite loop in get_fileinfo() (closes: #888506),
- CVE-2018-9058: infinite loop in runzip_fd() ,
- CVE-2018-10685: use-after-free in lzma_decompress_buf()
(closes: #897645).
* Update homepage location.
* Update debhelper level to 11:
- don't need dh_installman anymore,
- remove dh-autoreconf build dependency,
- remove autotools-dev build dependency.
* Update Standards-Version to 4.1.4 .
2016-11-14 - Laszlo Boszormenyi (GCS) <>
lrzip (0.631-1) unstable; urgency=low
* New upstream release.
2016-08-21 - Laszlo Boszormenyi (GCS) <>
lrzip (0.630-1) unstable; urgency=low
* New upstream release.
* (De)compressing to/from stdin/stdout works again (closes: #742698).
* Update Standards-Version to 3.9.8 .
2015-04-25 - Laszlo Boszormenyi (GCS) <>
lrzip (0.621-1) unstable; urgency=low
* New upstream release.
* Fixes memory handling with fuzzed archives (closes: #774040).
* Update copyright .
* Update Standards-Version to 3.9.6 .
2014-03-28 - Laszlo Boszormenyi (GCS) <>
lrzip (0.616-1) unstable; urgency=low
* New upstream release, fixes manpage typos (closes: #655295).
* Use dh-autoreconf to update config.{sub,guess} (closes: #727925).
* Update Standards-Version to 3.9.5 .
* New maintainer (closes: #742878).
2012-02-08 - Jari Aalto <>
lrzip (0.608-2) unstable; urgency=low
* debian/compat
- Update to 9
* debian/control
- (Build-Depends): update to debhelper 9, dpkg-dev 1.16.1.
* debian/copyright
- (Source, X-Upstream-Vcs-Git): Update location.
- (debian/*): Update year.
* debian/rules
- Use hardened CFLAGS (release goal).
2011-10-24 - Jari Aalto <>
lrzip (0.608-1) unstable; urgency=low
* New upstream release.
2011-09-21 - Jari Aalto <>
lrzip (0.607+20110921+gita28def8-1) unstable; urgency=low
* New upstream release
- On hurd-i386 missing mremap (FTBFS; Closes: #642271).
* debian/patches
- (bash completion.d): Delete; accepted upstream.
2011-09-19 - Jari Aalto <>
lrzip (0.607+20110917+git79c2e9a-2) unstable; urgency=low
* debian/rules:
- (override_dh_auto_install): do not install bash completion; already
in package bash-completion (Closes: #642062).

