USN-5355-1: zlib vulnerability
Danilo Ramos discovered that zlib incorrectly handled memory when performing certain deflating operations. An attacker could use this issue to cause zlib to crash, resulting in a denial of service, or possibly execute arbitrary code.
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-5355-1?
The severity of USN-5355-1 is significant as it can lead to a denial of service or potentially allow for arbitrary code execution.
How do I fix USN-5355-1?
To fix USN-5355-1, update the affected packages to the recommended versions listed in the Ubuntu security notices.
What affected software is listed in USN-5355-1?
USN-5355-1 affects several packages including lib64z1, libx32z1, lib32z1, and zlib1g on specified versions of Ubuntu.
Is there a risk of exploit with USN-5355-1?
Yes, if USN-5355-1 is not addressed, there is a risk that attackers could exploit the vulnerability to crash the system or execute malicious code.
What should I do if I'm using an affected version described in USN-5355-1?
If using an affected version, it is crucial to apply the provided patches and upgrade your system as soon as possible.