Описание
zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
zlib | fixed | 1:1.2.11.dfsg-4 | package | |
libz-mingw-w64 | fixed | 1.2.11+dfsg-5 | package | |
libz-mingw-w64 | no-dsa | bullseye | package | |
libz-mingw-w64 | no-dsa | buster | package |
Примечания
https://github.com/madler/zlib/commit/5c44459c3b28a9bd3283aaceab7c615f8020c531
https://www.openwall.com/lists/oss-security/2022/03/24/1
Details: https://www.openwall.com/lists/oss-security/2022/03/26/1
https://www.openwall.com/lists/oss-security/2022/03/27/1
https://www.openwall.com/lists/oss-security/2022/03/28/1
EPSS
Связанные уязвимости
zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.
zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.
zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.
EPSS