CVE-2018-25032

Updated: 2026-02-27 03:07:43.051527

Description:

zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x MEDIUM 5.0
CVSS Version 3.x HIGH 7.5

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

CentOS 7 ELS zlib 1.2.7 7.5 HIGH Already Fixed 2023-10-30 11:07:18
CentOS 7 ELS python3 3.6.8 7.5 HIGH Not Vulnerable 2023-10-30 09:34:01
CentOS 8.4 ELS minizip 2.8.9-2 7.5 HIGH Not Vulnerable 2026-01-11 16:05:29 Not affected: CVE-2018-25032 is a flaw in zlib’s deflate implementation, not in minizip itself. Mi...
CentOS 8.4 ELS rsync 3.1.3 7.5 HIGH Released CLSA-2022:1652987318 2022-05-13 08:22:43 Not affected: CVE-2018-25032 is a flaw in zlib’s deflate implementation, not in minizip itself. Mi...
CentOS 8.4 ELS zlib 1.2.11-17 7.5 HIGH Released CLSA-2022:1652706470 2022-05-05 07:11:25 Not affected: CVE-2018-25032 is a flaw in zlib’s deflate implementation, not in minizip itself. Mi...
CentOS 8.4 ELS python3 3.6.8 7.5 HIGH Not Vulnerable 2023-10-27 11:18:51 Not affected: CVE-2018-25032 is a flaw in zlib’s deflate implementation, not in minizip itself. Mi...
CentOS 8.4 ELS python2 2.7.18 7.5 HIGH Not Vulnerable 2023-10-27 11:18:51 Not affected: CVE-2018-25032 is a flaw in zlib’s deflate implementation, not in minizip itself. Mi...
CentOS 8.5 ELS minizip 2.8.9-2 7.5 HIGH Not Vulnerable 2026-01-11 16:05:29 Not affected: CVE-2018-25032 is a flaw in zlib’s deflate implementation, not in minizip itself. Mi...
CentOS 8.5 ELS rsync 3.1.3 7.5 HIGH Released CLSA-2022:1652987360 2022-05-13 08:22:44 Not affected: CVE-2018-25032 is a flaw in zlib’s deflate implementation, not in minizip itself. Mi...
CentOS 8.5 ELS python2 2.7.18 7.5 HIGH Not Vulnerable 2023-10-27 11:18:51 Not affected: CVE-2018-25032 is a flaw in zlib’s deflate implementation, not in minizip itself. Mi...
Total: 49