inffast.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
Configuration 6 (hide)
|
Configuration 7 (hide)
|
Configuration 8 (hide)
|
Configuration 9 (hide)
|
History
21 Nov 2024, 03:01
Type | Values Removed | Values Added |
---|---|---|
References | () http://lists.opensuse.org/opensuse-updates/2016-12/msg00127.html - | |
References | () http://lists.opensuse.org/opensuse-updates/2017-01/msg00050.html - | |
References | () http://lists.opensuse.org/opensuse-updates/2017-01/msg00053.html - | |
References | () http://www.openwall.com/lists/oss-security/2016/12/05/21 - | |
References | () http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html - | |
References | () http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html - | |
References | () http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html - | |
References | () http://www.securityfocus.com/bid/95131 - | |
References | () http://www.securitytracker.com/id/1039427 - | |
References | () http://www.securitytracker.com/id/1039596 - | |
References | () https://access.redhat.com/errata/RHSA-2017:1220 - | |
References | () https://access.redhat.com/errata/RHSA-2017:1221 - | |
References | () https://access.redhat.com/errata/RHSA-2017:1222 - | |
References | () https://access.redhat.com/errata/RHSA-2017:2999 - | |
References | () https://access.redhat.com/errata/RHSA-2017:3046 - | |
References | () https://access.redhat.com/errata/RHSA-2017:3047 - | |
References | () https://access.redhat.com/errata/RHSA-2017:3453 - | |
References | () https://bugzilla.redhat.com/show_bug.cgi?id=1402346 - | |
References | () https://github.com/madler/zlib/commit/9aaec95e82117c1cb0f9624264c3618fc380cecb - | |
References | () https://lists.debian.org/debian-lts-announce/2019/03/msg00027.html - | |
References | () https://lists.debian.org/debian-lts-announce/2020/01/msg00030.html - | |
References | () https://security.gentoo.org/glsa/201701-56 - | |
References | () https://security.gentoo.org/glsa/202007-54 - | |
References | () https://security.netapp.com/advisory/ntap-20171019-0001/ - | |
References | () https://support.apple.com/HT208112 - | |
References | () https://support.apple.com/HT208113 - | |
References | () https://support.apple.com/HT208115 - | |
References | () https://support.apple.com/HT208144 - | |
References | () https://usn.ubuntu.com/4246-1/ - | |
References | () https://usn.ubuntu.com/4292-1/ - | |
References | () https://wiki.mozilla.org/MOSS/Secure_Open_Source/Completed#zlib - | |
References | () https://wiki.mozilla.org/images/0/09/Zlib-report.pdf - | |
References | () https://www.oracle.com/security-alerts/cpujul2020.html - |
16 Aug 2022, 13:02
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:nodejs:node.js:*:*:*:*:lts:*:*:* cpe:2.3:a:nodejs:node.js:*:*:*:*:-:*:*:* |
22 Jun 2022, 17:16
Type | Values Removed | Values Added |
---|---|---|
CWE | NVD-CWE-noinfo | |
CPE | cpe:2.3:a:oracle:jdk:1.8.0:update144:*:*:*:*:*:* cpe:2.3:a:zlib:zlib:*:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:* cpe:2.3:a:netapp:snapmanager:-:*:*:*:*:oracle:*:* cpe:2.3:a:netapp:oncommand_unified_manager:*:*:*:*:*:windows:*:* cpe:2.3:h:netapp:hci_storage_node:-:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_eus:7.5:*:*:*:*:*:*:* cpe:2.3:a:oracle:jre:1.6.0:update161:*:*:*:*:*:* cpe:2.3:a:netapp:solidfire:-:*:*:*:*:*:*:* cpe:2.3:a:netapp:e-series_santricity_web_services:-:*:*:*:*:web_services_proxy:*:* cpe:2.3:a:netapp:e-series_santricity_storage_manager:-:*:*:*:*:*:*:* cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* cpe:2.3:a:oracle:jdk:1.6.0:update161:*:*:*:*:*:* cpe:2.3:a:netapp:storage_replication_adapter_for_clustered_data_ontap:-:*:*:*:*:vmware_vsphere:*:* cpe:2.3:a:netapp:e-series_santricity_os_controller:*:*:*:*:*:*:*:* cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:* cpe:2.3:a:netapp:cloud_backup:-:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:* cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:* cpe:2.3:a:oracle:jdk:1.7.0:update151:*:*:*:*:*:* cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:* cpe:2.3:a:netapp:active_iq_unified_manager:*:*:*:*:*:vmware_vsphere:*:* cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:* cpe:2.3:a:netapp:oncommand_insight:-:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:* cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* cpe:2.3:a:netapp:snapmanager:-:*:*:*:*:sap:*:* cpe:2.3:a:netapp:oncommand_balance:-:*:*:*:*:*:*:* cpe:2.3:a:netapp:active_iq_unified_manager:*:*:*:*:*:windows:*:* cpe:2.3:a:netapp:e-series_santricity_management:-:*:*:*:*:vmware_sra:*:* cpe:2.3:a:oracle:database_server:18c:*:*:*:*:*:*:* cpe:2.3:a:netapp:virtual_storage_console:-:*:*:*:*:vmware_vsphere:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:* cpe:2.3:a:oracle:jre:1.8.0:update144:*:*:*:*:*:* cpe:2.3:a:oracle:jre:1.7.0:update151:*:*:*:*:*:* cpe:2.3:a:netapp:oncommand_shift:-:*:*:*:*:*:*:* cpe:2.3:a:netapp:oncommand_unified_manager:*:*:*:*:*:vsphere:*:* cpe:2.3:a:netapp:steelstore_cloud_integrated_storage:-:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_eus:7.4:*:*:*:*:*:*:* cpe:2.3:a:netapp:e-series_santricity_management:-:*:*:*:*:vmware_vcenter:*:* cpe:2.3:a:netapp:vasa_provider_for_clustered_data_ontap:*:*:*:*:*:*:*:* cpe:2.3:a:netapp:symantec_netbackup:-:*:*:*:*:*:*:* cpe:2.3:a:oracle:mysql:*:*:*:*:*:*:*:* cpe:2.3:a:netapp:oncommand_workflow_automation:-:*:*:*:*:*:*:* cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:* cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:* cpe:2.3:a:netapp:oncommand_unified_manager:-:*:*:*:*:7-mode:*:* cpe:2.3:a:netapp:oncommand_performance_manager:-:*:*:*:*:vmware_vsphere:*:* cpe:2.3:a:netapp:e-series_santricity_management:-:*:*:*:*:vmware_vasa:*:* |
|
References | (REDHAT) https://access.redhat.com/errata/RHSA-2017:3047 - Third Party Advisory | |
References | (CONFIRM) http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html - Patch, Third Party Advisory | |
References | (REDHAT) https://access.redhat.com/errata/RHSA-2017:1220 - Third Party Advisory | |
References | (CONFIRM) https://support.apple.com/HT208112 - Third Party Advisory | |
References | (REDHAT) https://access.redhat.com/errata/RHSA-2017:3453 - Third Party Advisory | |
References | (CONFIRM) https://github.com/madler/zlib/commit/9aaec95e82117c1cb0f9624264c3618fc380cecb - Patch, Third Party Advisory | |
References | (GENTOO) https://security.gentoo.org/glsa/202007-54 - Third Party Advisory | |
References | (REDHAT) https://access.redhat.com/errata/RHSA-2017:3046 - Third Party Advisory | |
References | (MLIST) http://www.openwall.com/lists/oss-security/2016/12/05/21 - Mailing List, Patch, Third Party Advisory, VDB Entry | |
References | (CONFIRM) http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html - Patch, Third Party Advisory | |
References | (MISC) https://www.oracle.com/security-alerts/cpujul2020.html - Third Party Advisory | |
References | (SUSE) http://lists.opensuse.org/opensuse-updates/2017-01/msg00050.html - Mailing List, Third Party Advisory | |
References | (CONFIRM) https://support.apple.com/HT208113 - Third Party Advisory | |
References | (REDHAT) https://access.redhat.com/errata/RHSA-2017:1221 - Third Party Advisory | |
References | (SECTRACK) http://www.securitytracker.com/id/1039427 - Broken Link, Third Party Advisory, VDB Entry | |
References | (SUSE) http://lists.opensuse.org/opensuse-updates/2017-01/msg00053.html - Mailing List, Third Party Advisory | |
References | (CONFIRM) http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html - Patch, Third Party Advisory | |
References | (CONFIRM) https://support.apple.com/HT208115 - Third Party Advisory | |
References | (REDHAT) https://access.redhat.com/errata/RHSA-2017:1222 - Third Party Advisory | |
References | (MLIST) https://lists.debian.org/debian-lts-announce/2019/03/msg00027.html - Mailing List, Third Party Advisory | |
References | (SUSE) http://lists.opensuse.org/opensuse-updates/2016-12/msg00127.html - Mailing List, Third Party Advisory | |
References | (REDHAT) https://access.redhat.com/errata/RHSA-2017:2999 - Third Party Advisory | |
References | (CONFIRM) https://security.netapp.com/advisory/ntap-20171019-0001/ - Third Party Advisory | |
References | (CONFIRM) https://support.apple.com/HT208144 - Third Party Advisory | |
References | (MLIST) https://lists.debian.org/debian-lts-announce/2020/01/msg00030.html - Mailing List, Third Party Advisory | |
References | (UBUNTU) https://usn.ubuntu.com/4246-1/ - Third Party Advisory | |
References | (UBUNTU) https://usn.ubuntu.com/4292-1/ - Third Party Advisory | |
References | (SECTRACK) http://www.securitytracker.com/id/1039596 - Broken Link, Third Party Advisory, VDB Entry |
Information
Published : 2017-05-23 04:29
Updated : 2024-11-21 03:01
NVD link : CVE-2016-9841
Mitre link : CVE-2016-9841
CVE.ORG link : CVE-2016-9841
JSON object : View
Products Affected
netapp
- steelstore_cloud_integrated_storage
- vasa_provider_for_clustered_data_ontap
- e-series_santricity_web_services
- oncommand_unified_manager
- oncommand_workflow_automation
- oncommand_performance_manager
- active_iq_unified_manager
- oncommand_balance
- cloud_backup
- oncommand_insight
- storage_replication_adapter_for_clustered_data_ontap
- snapmanager
- virtual_storage_console
- solidfire
- symantec_netbackup
- e-series_santricity_os_controller
- hci_storage_node
- oncommand_shift
- e-series_santricity_storage_manager
- e-series_santricity_management
apple
- iphone_os
- watchos
- tvos
- mac_os_x
canonical
- ubuntu_linux
zlib
- zlib
redhat
- enterprise_linux_eus
- satellite
- enterprise_linux_workstation
- enterprise_linux_desktop
- enterprise_linux_server
opensuse
- leap
- opensuse
oracle
- jdk
- database_server
- mysql
- jre
debian
- debian_linux
nodejs
- node.js
CWE