Back

HIGH

zlib DoS

Published Jul 6, 2005

Description

zlib 1.2 and later versions allows remote attackers to cause a denial of service (crash) via a crafted compressed stream with an incomplete code description of a length greater than 1, which leads to a buffer overflow, as demonstrated using a crafted PNG file.

Affected products

Remediation

Red Hat statement

Red Hat Enterprise Linux 5 is not vulnerable to this issue as it contains a backported patch.

Metrics

Weaknesses (0)

No CWE recorded.

References (61)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Jul 6, 2005
Updated Jul 14, 2026
Reserved Jun 30, 2005
NVD
Status Modified
Modified Jul 14, 2026
Red Hat
Severity Important
Public date Jul 6, 2005