VDB
CVE-2005-1849
CVE-2005-1849
PUBLISHED
CVSS 5 MEDIUM
inftrees.h in zlib 1.2.2 allows remote attackers to cause a denial of service (application crash) via an invalid file that causes a large dynamic tree to be produced.
EPSS 7.99% · 92.2th percentile
Risk Scores
CVSS 2.0
5
EPSS Score
7.99%
92.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| zlib | zlib | 1.2.2 |
Exploit Intelligence
- CIRCL seen: CVE-2005-1849 (circl-sighting)
- SUSE-SA:2005:043 (circl)
- RHSA-2008:0629 (circl)
- DSA-797 (circl)
- DSA-763 (circl)
- GLSA-200509-18 (circl)
- MDKSA-2005:196 (circl)
- http://security.debian.org/pool/updates/main/z/zlib/zlib_1.2.2-4.sarge.2.diff.gz (circl)
- 20070404 VMSA-2007-0003 VMware ESX 3.0.1 and 3.0.0 server security updates (circl)
- USN-151-3 (circl)
…and 29 more exploits
Timeline
- Jul 26, 2005 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 3, 2022 CVE Updated
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- May 25, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
References
- zlib-codetable-dos(21456) vdb
- DSA-1026 vendor-advisory
- 19334 third-party-advisory
- DSA-797 vendor-advisory
- DSA-763 vendor-advisory
- GLSA-200509-18 vendor-advisory
- MDKSA-2005:196 vendor-advisory
- http://security.debian.org/pool/updates/main/z/zlib/zlib_1.2.2-4.sarge.2.diff.gz url
- 20070404 VMSA-2007-0003 VMware ESX 3.0.1 and 3.0.0 server security updates mailing-list
- USN-151-3 vendor-advisory
- GLSA-200603-18 vendor-advisory
- RHSA-2005:584 vendor-advisory
- http://www.vmware.com/support/vi3/doc/esx-9916286-patch.html url
- 16137 third-party-advisory
- 31492 third-party-advisory
- oval:org.mitre.oval:def:11402 vdb
- 18141 vdb
- 1014540 vdb
- SUSE-SA:2005:043 vendor-advisory
- MDKSA-2006:070 vendor-advisory
…and 15 more