CVE-2018-25032
25.03.2022, 09:15
zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.Enginsight
| Vendor | Product | Version |
|---|---|---|
| nokogiri | nokogiri | 𝑥 < 1.13.4 |
| python | python | 3.7.0 ≤ 𝑥 < 3.7.14 |
| python | python | 3.8.0 ≤ 𝑥 < 3.8.14 |
| python | python | 3.9.0 ≤ 𝑥 < 3.9.13 |
| python | python | 3.10.0 ≤ 𝑥 < 3.10.5 |
| zlib | zlib | 1.2.2.2 ≤ 𝑥 < 1.2.12 |
| debian | debian_linux | 9.0 |
| debian | debian_linux | 10.0 |
| debian | debian_linux | 11.0 |
| apple | mac_os_x | 10.15 ≤ 𝑥 < 10.15.7 |
| apple | mac_os_x | 10.15.7 |
| apple | mac_os_x | 10.15.7:security_update_2020 |
| apple | mac_os_x | 10.15.7:security_update_2020-001 |
| apple | mac_os_x | 10.15.7:security_update_2020-005 |
| apple | mac_os_x | 10.15.7:security_update_2020-007 |
| apple | mac_os_x | 10.15.7:security_update_2021-001 |
| apple | mac_os_x | 10.15.7:security_update_2021-002 |
| apple | mac_os_x | 10.15.7:security_update_2021-003 |
| apple | mac_os_x | 10.15.7:security_update_2021-006 |
| apple | mac_os_x | 10.15.7:security_update_2021-007 |
| apple | mac_os_x | 10.15.7:security_update_2021-008 |
| apple | mac_os_x | 10.15.7:security_update_2022-001 |
| apple | mac_os_x | 10.15.7:security_update_2022-002 |
| apple | mac_os_x | 10.15.7:security_update_2022-003 |
| apple | macos | 11.0 ≤ 𝑥 < 11.6.6 |
| apple | macos | 12.0.0 ≤ 𝑥 < 12.4 |
| mariadb | mariadb | 10.3.0 ≤ 𝑥 < 10.3.36 |
| mariadb | mariadb | 10.4.0 ≤ 𝑥 < 10.4.26 |
| mariadb | mariadb | 10.5.0 ≤ 𝑥 < 10.5.17 |
| mariadb | mariadb | 10.6.0 ≤ 𝑥 < 10.6.9 |
| mariadb | mariadb | 10.7.0 ≤ 𝑥 < 10.7.5 |
| mariadb | mariadb | 10.8.0 ≤ 𝑥 < 10.8.4 |
| mariadb | mariadb | 10.9.0 ≤ 𝑥 < 10.9.2 |
| netapp | active_iq_unified_manager | - |
| netapp | e-series_santricity_os_controller | 11.0.0 ≤ 𝑥 ≤ 11.70.2 |
| netapp | management_services_for_element_software | - |
| netapp | oncommand_workflow_automation | - |
| netapp | ontap_select_deploy_administration_utility | - |
| netapp | hci_compute_node | - |
| netapp | h300s_firmware | - |
| netapp | h500s_firmware | - |
| netapp | h700s_firmware | - |
| netapp | h410s_firmware | - |
| netapp | h410c_firmware | - |
| siemens | scalance_sc622-2c_firmware | 𝑥 < 3.0 |
| siemens | scalance_sc626-2c_firmware | 𝑥 < 3.0 |
| siemens | scalance_sc632-2c_firmware | 𝑥 < 3.0 |
| siemens | scalance_sc636-2c_firmware | 𝑥 < 3.0 |
| siemens | scalance_sc642-2c_firmware | 𝑥 < 3.0 |
| siemens | scalance_sc646-2c_firmware | 𝑥 < 3.0 |
| azul | zulu | 6.45 |
| azul | zulu | 7.52 |
| azul | zulu | 8.60 |
| azul | zulu | 11.54 |
| azul | zulu | 13.46 |
| azul | zulu | 15.38 |
| azul | zulu | 17.32 |
| goto | gotoassist | 𝑥 < 11.9.18 |
𝑥
= Vulnerable software versions
Debian Releases
Debian Product | |||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libz-mingw-w64 |
| ||||||||||||
| zlib |
|
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| klibc |
| ||||||||||||||||||
| mariadb-10.3 |
| ||||||||||||||||||
| mariadb-10.6 |
| ||||||||||||||||||
| rsync |
| ||||||||||||||||||
| zlib |
|
Common Weakness Enumeration
References