← Back

CVE-2018-25032

nvd nist
Published: Mar 25, 2022Modified: Jul 14, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.

Affected (61)

Products: Nokogiri: Nokogiri · Python: Python · Zlib: Zlib · +8 more
Show all products
1 product
Nokogiri
1 product
Python
1 product
Zlib
1 product
Debian Linux
1 product
Fedora
2 products
Mac Os X
Macos
1 product
Mariadb
11 products
Active Iq Unified Manager
E Series Santricity Os Controller
Hci Compute Node
Oncommand Workflow Automation
H300s Firmware
H500s Firmware
H700s Firmware
H410s Firmware
H410c Firmware
6 products
Scalance Sc622 2c Firmware
Scalance Sc626 2c Firmware
Scalance Sc632 2c Firmware
Scalance Sc636 2c Firmware
Scalance Sc642 2c Firmware
Scalance Sc646 2c Firmware
1 product
Zulu
1 product
Gotoassist
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 1.13.4
Configuration B
4 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Python
From 3.10.0 to 3.10.5
From 3.7.0 to 3.7.14
From 3.8.0 to 3.8.14
From 3.9.0 to 3.9.13
Running on/withPlatform Versions
Microsoft
Windows
All versions
Configuration C
1 vulnerable
Vulnerable SoftwareAffected Versions
From 1.2.2.2 to 1.2.12
Configuration D
3 vulnerable
Vulnerable SoftwareAffected Versions
Debian
Version 10.0
Version 11.0
Version 9.0
Configuration E
3 vulnerable
Vulnerable SoftwareAffected Versions
Fedoraproject
Version 34
Version 35
Version 36
Configuration F
17 vulnerable
Vulnerable SoftwareAffected Versions
Apple
From 10.15 to 10.15.7
Version 10.15.7
Version 10.15.7 security_update_2020-001
Version 10.15.7 security_update_2020-005
Version 10.15.7 security_update_2020-007
Version 10.15.7 security_update_2020
Version 10.15.7 security_update_2021-001
Version 10.15.7 security_update_2021-002
Version 10.15.7 security_update_2021-003
Version 10.15.7 security_update_2021-006
Version 10.15.7 security_update_2021-007
Version 10.15.7 security_update_2021-008
Version 10.15.7 security_update_2022-001
Version 10.15.7 security_update_2022-002
Version 10.15.7 security_update_2022-003
Apple
From 11.0 to 11.6.6
From 12.0.0 to 12.4
Configuration G
7 vulnerable
Vulnerable SoftwareAffected Versions
Mariadb
From 10.3.0 to 10.3.36
From 10.4.0 to 10.4.26
From 10.5.0 to 10.5.17
From 10.6.0 to 10.6.9
From 10.7.0 to 10.7.5
From 10.8.0 to 10.8.4
From 10.9.0 to 10.9.2
Configuration H
6 vulnerable
Configuration I
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
H300s
All versions
Configuration J
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
H500s
All versions
Configuration K
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
H700s
All versions
Configuration L
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
H410s
All versions
Configuration M
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
H410c
All versions
Configuration N
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.0
Running on/withPlatform Versions
Siemens
Scalance Sc622 2c
All versions
Configuration O
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.0
Running on/withPlatform Versions
Siemens
Scalance Sc626 2c
All versions
Configuration P
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.0
Running on/withPlatform Versions
Siemens
Scalance Sc632 2c
All versions
Configuration Q
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.0
Running on/withPlatform Versions
Siemens
Scalance Sc636 2c
All versions
Configuration R
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.0
Running on/withPlatform Versions
Siemens
Scalance Sc642 2c
All versions
Configuration S
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.0
Running on/withPlatform Versions
Siemens
Scalance Sc646 2c
All versions
Configuration T
7 vulnerable
Vulnerable SoftwareAffected Versions
Azul
Version 11.54
Version 13.46
Version 15.38
Version 17.32
Version 6.45
Version 7.52
Version 8.60
Configuration U
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 11.9.18

References (64)

Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
ExploitMailing ListThird Party Advisory
Source: cve@mitre.org
PatchThird Party Advisory
Source: cve@mitre.org
Issue TrackingPatchThird Party Advisory
Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
PatchThird Party Advisory
Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
ExploitMailing ListThird Party Advisory
Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitMailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingPatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitMailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory
Source: 0b142b55-0307-4c5a-b3c9-f314f3fb7c5e
Source: 0b142b55-0307-4c5a-b3c9-f314f3fb7c5e
Source: 0b142b55-0307-4c5a-b3c9-f314f3fb7c5e
Source: 0b142b55-0307-4c5a-b3c9-f314f3fb7c5e
Source: 0b142b55-0307-4c5a-b3c9-f314f3fb7c5e
Source: 0b142b55-0307-4c5a-b3c9-f314f3fb7c5e

Timeline

No history available yet.