Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-9840

Опубликовано: 23 мая 2017
Источник: debian
EPSS Низкий

Описание

inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
zlibfixed1:1.2.8.dfsg-3package
zlibno-dsawheezypackage
rsyncfixed3.1.3-6package
rsyncfixed3.1.2-1+deb9u2stretchpackage

Примечания

  • https://github.com/madler/zlib/commit/6a043145ca6e9c55184013841a67b2fef87e44c0

  • Report: https://wiki.mozilla.org/images/0/09/Zlib-report.pdf

EPSS

Процентиль: 91%
0.04793
Низкий

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 9 лет назад

inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.

CVSS3: 8.8
redhat
почти 10 лет назад

inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.

CVSS3: 8.8
nvd
около 9 лет назад

inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.

CVSS3: 8.8
msrc
больше 1 года назад

inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic

suse-cvrf
около 1 года назад

Security update for boost

EPSS

Процентиль: 91%
0.04793
Низкий