RHSA-2025:8314: Important: zlib security update
Published May 29, 2025
·Updated
Important: zlib security update
Affected Software
22 affected componentsFixes available
Red Hat Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian
Red Hat Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems)
Red Hat Red Hat Enterprise Linux Server - Extended Life Cycle Support
Red Hat Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian
redhat/zlib<1.2.7-21.el7_9.1
1.2.7-21.el7_9.1
redhat/minizip<1.2.7-21.el7_9.1
1.2.7-21.el7_9.1
redhat/minizip<1.2.7-21.el7_9.1
1.2.7-21.el7_9.1
redhat/minizip-devel<1.2.7-21.el7_9.1
1.2.7-21.el7_9.1
redhat/minizip-devel<1.2.7-21.el7_9.1
1.2.7-21.el7_9.1
redhat/zlib<1.2.7-21.el7_9.1
1.2.7-21.el7_9.1
redhat/zlib-debuginfo<1.2.7-21.el7_9.1
1.2.7-21.el7_9.1
redhat/zlib-debuginfo<1.2.7-21.el7_9.1
1.2.7-21.el7_9.1
redhat/zlib-devel<1.2.7-21.el7_9.1
1.2.7-21.el7_9.1
redhat/zlib-devel<1.2.7-21.el7_9.1
1.2.7-21.el7_9.1
redhat/zlib-static<1.2.7-21.el7_9.1
1.2.7-21.el7_9.1
redhat/zlib-static<1.2.7-21.el7_9.1
1.2.7-21.el7_9.1
redhat/minizip<1.2.7-21.el7_9.1
1.2.7-21.el7_9.1
redhat/minizip-devel<1.2.7-21.el7_9.1
1.2.7-21.el7_9.1
redhat/zlib<1.2.7-21.el7_9.1
1.2.7-21.el7_9.1
redhat/zlib-debuginfo<1.2.7-21.el7_9.1
1.2.7-21.el7_9.1
redhat/zlib-devel<1.2.7-21.el7_9.1
1.2.7-21.el7_9.1
redhat/zlib-static<1.2.7-21.el7_9.1
1.2.7-21.el7_9.1
Remediation
Event History
May 29, 2025
Advisory Published
via Red Hat·01:17 PM
Jun 14, 2025
Advisory Published
via Red Hat·01:38 PM
Data Sourced
via Red Hat·01:38 PM
RemedyDescriptionAffected Software
Frequently Asked Questions
1
What is the severity of RHSA-2025:8314?
The severity of RHSA-2025:8314 is classified as important due to a security vulnerability in the zlib library.
2
How do I fix RHSA-2025:8314?
To fix RHSA-2025:8314, you should update the zlib package to version 1.2.7-21.el7_9.1 or later.
3
What does RHSA-2025:8314 address?
RHSA-2025:8314 addresses an improper pointer arithmetic vulnerability in the pcl component of the zlib library, identified as CVE-2025-4638.
4
Which systems are affected by RHSA-2025:8314?
RHSA-2025:8314 affects systems using the zlib packages, including Red Hat Enterprise Linux Server and its derivatives.
5
Is there a risk if I do not update for RHSA-2025:8314?
Yes, failure to update for RHSA-2025:8314 may expose your system to potential security risks associated with CVE-2025-4638.