USN-7107-1: zlib vulnerability
It was discovered that Minizip in zlib incorrectly handled certain zip header fields. An attacker could possibly use this issue to cause a denial of service, or execute arbitrary code.
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-7107-1?
The severity of USN-7107-1 is significant as it allows potential denial of service and arbitrary code execution.
How do I fix USN-7107-1?
To fix USN-7107-1, update the affected packages to version 1:1.2.8.dfsg-1ubuntu1.1+esm3.
What software is affected by USN-7107-1?
USN-7107-1 affects several packages including lib32z1, lib32z1-dev, libx32z1, and zlib1g on Ubuntu 14.04.
What is Minizip in relation to USN-7107-1?
Minizip is a component within zlib that was found to incorrectly handle certain zip header fields, leading to vulnerabilities.
Can USN-7107-1 be exploited remotely?
Yes, USN-7107-1 contains a vulnerability that could potentially be exploited remotely for denial of service or executing malicious code.