Перейти к содержимому
Noroxi

Записи zlib

17 опубликованных записей вендора zlib.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
2
С записью об исправлении
94,1 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 17
  2. 22
  3. 23
  4. 25
  5. 26

Столбик: всего · тёмная часть: CISA KEV.

Все записи

17 записей
  • CVE-2018-25032
    46В плане

    zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.

    ВысокаяCVSS 7,5Proof of conceptEPSS 52 %

    zlib · zlib25 мар. 2022 г.

  • CVE-2022-37434
    45В плане

    zlib through 1.2.12 has a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header extra field.

    КритическаяCVSS 9,8Proof of conceptEPSS 19 %

    zlib · zlib5 авг. 2022 г.

  • CVE-2002-0059
    42В плане

    The decompression algorithm in zlib 1.1.3 and earlier, as used in many different utilities and packages, causes inflateEnd to release certai

    КритическаяCVSS 9,8Эксплойта нетEPSS 10 %

    zlib · zlib15 мар. 2002 г.

  • CVE-2016-9841
    41В плане

    inffast.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.

    КритическаяCVSS 9,8Эксплойта нетEPSS 8 %

    zlib · zlib23 мая 2017 г.

  • CVE-2016-9843
    41В плане

    The crc32_big function in crc32.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving big

    КритическаяCVSS 9,8Эксплойта нетEPSS 6 %

    zlib · zlib23 мая 2017 г.

  • CVE-2023-45853
    40В плане

    MiniZip in zlib through 1.3 has an integer overflow and resultant heap-based buffer overflow in zipOpenNewFileInZip4_64 via a long filename,

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    zlib · zlib13 окт. 2023 г.

  • CVE-2003-0107
    38Наблюдать

    Buffer overflow in the gzprintf function in zlib 1.1.4, when zlib is compiled without vsnprintf or when long inputs are truncated using vsnp

    ВысокаяCVSS 7,5Proof of conceptEPSS 26 %

    zlib · zlib7 мар. 2003 г.

  • CVE-2016-9842
    37Наблюдать

    The inflateMark function in inflate.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving

    ВысокаяCVSS 8,8Эксплойта нетEPSS 5 %

    zlib · zlib23 мая 2017 г.

  • CVE-2016-9840
    36Наблюдать

    inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 5 %

    zlib · zlib23 мая 2017 г.

  • CVE-2005-2096
    32Наблюдать

    zlib 1.2 and later versions allows remote attackers to cause a denial of service (crash) via a crafted compressed stream with an incomplete

    ВысокаяCVSS 7,5Эксплойта нетEPSS 6 %

    zlib · zlib6 июл. 2005 г.

  • CVE-2025-0725
    29Наблюдать

    gzip integer overflow

    ВысокаяCVSS 7,3Эксплойта нетEPSS 1 %

    netapp · hci baseboard management controller5 февр. 2025 г.

  • CVE-2026-27171
    22Наблюдать

    zlib before 1.3.2 allows CPU consumption via crc32_combine64 and crc32_combine_gen64 because x2nmodp can do right shifts within a loop that

    СредняяCVSS 5,5Эксплойта нетEPSS 0 %

    zlib · zlib18 февр. 2026 г.

  • CVE-2005-1849
    21Наблюдать

    inftrees.h in zlib 1.2.2 allows remote attackers to cause a denial of service (application crash) via an invalid file that causes a large dy

    СредняяCVSS 5,0Эксплойта нетEPSS 4 %

    zlib · zlib26 июл. 2005 г.

  • CVE-2015-1191
    21Наблюдать

    Multiple directory traversal vulnerabilities in pigz 2.3.1 allow remote attackers to write to arbitrary files via a (1) full pathname or (2)

    СредняяCVSS 5,0Эксплойта нетEPSS 3 %

    zlib · pigz21 янв. 2015 г.

  • CVE-2026-22184
    18Наблюдать

    zlib <= 1.3.1.2 untgz Global Buffer Overflow in TGZfname()

    СредняяCVSS 4,6Эксплойта нетEPSS 0 %

    zlib · zlib7 янв. 2026 г.

  • CVE-2013-0296
    17Наблюдать

    Race condition in pigz before 2.2.5 uses permissions derived from the umask when compressing a file before setting that file's permissions t

    СредняяCVSS 4,4Эксплойта нетEPSS 0 %

    zlib · pigz27 апр. 2014 г.

  • CVE-2004-0797
    8Наблюдать

    The error handling in the (1) inflate and (2) inflateBack functions in ZLib compression library 1.2.x allows local users to cause a denial o

    НизкаяCVSS 2,1Эксплойта нетEPSS 0 %

    zlib · zlib20 окт. 2004 г.