CVE-2022-37434

NameCVE-2022-37434
Descriptionzlib through 1.2.12 has a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header extra field. NOTE: only applications that call inflateGetHeader are affected. Some common applications bundle the affected zlib source code but may be unable to call inflateGetHeader (e.g., see the nodejs/node reference).
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
ReferencesDLA-3103-1, DSA-5218-1, ELA-677-1
Debian Bugs1016710

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
libz-mingw-w64 (PTS)stretch (security), stretch (lts), stretch1.2.11+dfsg-1+deb9u1vulnerable
buster, bullseye1.2.11+dfsg-2vulnerable
bookworm1.2.13+dfsg-1fixed
sid, trixie1.3.1+dfsg-1fixed
zlib (PTS)jessie, jessie (lts)1:1.2.8.dfsg-2+deb8u3fixed
stretch (security)1:1.2.8.dfsg-5+deb9u1vulnerable
stretch (lts), stretch1:1.2.8.dfsg-5+deb9u2fixed
buster1:1.2.11.dfsg-1+deb10u1vulnerable
buster (security)1:1.2.11.dfsg-1+deb10u2fixed
bullseye (security), bullseye1:1.2.11.dfsg-2+deb11u2fixed
bookworm1:1.2.13.dfsg-1fixed
trixie1:1.3.dfsg-3fixed
sid1:1.3.dfsg-3.1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
libz-mingw-w64sourcejessie(unfixed)end-of-life
libz-mingw-w64sourcestretch(unfixed)end-of-life
libz-mingw-w64source(unstable)1.2.12+dfsg-2
zlibsourcejessie1:1.2.8.dfsg-2+deb8u3ELA-677-1
zlibsourcestretch1:1.2.8.dfsg-5+deb9u2ELA-677-1
zlibsourcebuster1:1.2.11.dfsg-1+deb10u2DLA-3103-1
zlibsourcebullseye1:1.2.11.dfsg-2+deb11u2DSA-5218-1
zlibsource(unstable)1:1.2.11.dfsg-4.11016710

Notes

[bullseye] - libz-mingw-w64 <no-dsa> (Minor issue)
[buster] - libz-mingw-w64 <no-dsa> (Minor issue)
https://github.com/ivd38/zlib_overflow
https://github.com/madler/zlib/commit/eff308af425b67093bab25f80f1ae950166bece1
https://github.com/madler/zlib/commit/1eb7682f845ac9e9bf9ae35bbfb3bad5dacbd91d

Search for package or bug name: Reporting problems