Your submission was sent successfully! Close

CVE-2018-25032

Published: 25 March 2022

zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.

Priority

Medium

CVSS 3 base score: 7.5

Status

Package Release Status
rsync
Launchpad, Ubuntu, Debian
bionic
Released (3.1.2-2.1ubuntu1.4)
focal
Released (3.1.3-8ubuntu0.3)
impish Not vulnerable
(uses system zlib)
jammy Not vulnerable
(uses system zlib)
trusty Not vulnerable
(uses system zlib)
upstream
Released (3.2.4)
xenial Needed

zlib
Launchpad, Ubuntu, Debian
bionic
Released (1:1.2.11.dfsg-0ubuntu2.1)
focal
Released (1:1.2.11.dfsg-2ubuntu1.3)
impish
Released (1:1.2.11.dfsg-2ubuntu7.1)
jammy
Released (1:1.2.11.dfsg-2ubuntu9)
trusty
Released (1:1.2.8.dfsg-1ubuntu1.1+esm1)
upstream
Released (1.2.12)
xenial
Released (1:1.2.8.dfsg-2ubuntu4.3+esm1)