Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-25032

Опубликовано: 25 мар. 2022
Источник: debian
EPSS Низкий

Описание

zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
zlibfixed1:1.2.11.dfsg-4package
libz-mingw-w64fixed1.2.11+dfsg-5package
libz-mingw-w64no-dsabullseyepackage
libz-mingw-w64no-dsabusterpackage

Примечания

  • https://github.com/madler/zlib/commit/5c44459c3b28a9bd3283aaceab7c615f8020c531

  • https://www.openwall.com/lists/oss-security/2022/03/24/1

  • Details: https://www.openwall.com/lists/oss-security/2022/03/26/1

  • https://www.openwall.com/lists/oss-security/2022/03/27/1

  • https://www.openwall.com/lists/oss-security/2022/03/28/1

EPSS

Процентиль: 26%
0.00087
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 3 лет назад

zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.

CVSS3: 8.2
redhat
около 7 лет назад

zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.

CVSS3: 7.5
nvd
около 3 лет назад

zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.

CVSS3: 7.5
msrc
около 3 лет назад

Описание отсутствует

suse-cvrf
около 3 лет назад

Security update for zlib

EPSS

Процентиль: 26%
0.00087
Низкий