CVE-2016-9840
23.05.2017, 04:29
inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.Enginsight
Vendor | Product | Version |
---|---|---|
boost | boost | 𝑥 < 1.78.0 |
zlib | zlib | 1.2.0.6 ≤ 𝑥 < 1.2.9 |
opensuse | leap | 42.1 |
opensuse | leap | 42.2 |
opensuse | opensuse | 13.2 |
debian | debian_linux | 8.0 |
canonical | ubuntu_linux | 16.04 |
canonical | ubuntu_linux | 18.04 |
oracle | jdk | 1.6.0 |
oracle | jdk | 1.7.0 |
oracle | jdk | 1.8.0 |
oracle | jre | 1.6.0 |
oracle | jre | 1.7.0 |
oracle | jre | 1.8.0 |
oracle | mysql | 5.5.0 ≤ 𝑥 ≤ 5.5.61 |
oracle | mysql | 5.6.0 ≤ 𝑥 ≤ 5.6.41 |
oracle | mysql | 5.7.0 ≤ 𝑥 ≤ 5.7.23 |
oracle | mysql | 8.0.0 ≤ 𝑥 ≤ 8.0.12 |
redhat | satellite | 5.8 |
redhat | enterprise_linux_desktop | 6.0 |
redhat | enterprise_linux_desktop | 7.0 |
redhat | enterprise_linux_eus | 7.4 |
redhat | enterprise_linux_eus | 7.5 |
redhat | enterprise_linux_server | 6.0 |
redhat | enterprise_linux_server | 7.0 |
redhat | enterprise_linux_workstation | 6.0 |
redhat | enterprise_linux_workstation | 7.0 |
apple | iphone_os | 𝑥 < 11 |
apple | mac_os_x | 10.0.0 ≤ 𝑥 < 10.13.0 |
apple | tvos | 𝑥 < 11.0 |
apple | watchos | 𝑥 < 4 |
nodejs | node.js | 4.0.0 ≤ 𝑥 ≤ 4.1.2 |
nodejs | node.js | 4.2.0 ≤ 𝑥 < 4.8.2 |
nodejs | node.js | 6.0.0 ≤ 𝑥 ≤ 6.8.1 |
nodejs | node.js | 6.9.0 ≤ 𝑥 < 6.10.2 |
nodejs | node.js | 7.0.0 ≤ 𝑥 < 7.6.0 |
𝑥
= Vulnerable software versions

Debian Releases
Debian Product | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
rsync |
| ||||||||||||
zlib |
|

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
klibc |
| ||||||||||||||||||||||||||||||||||||||
rsync |
| ||||||||||||||||||||||||||||||||||||||
zlib |
|
References