CVE-2016-9841 PUBLISHED

inffast.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.

EPSS 20.28% · 95.5th percentile

Risk Scores

EPSS Score
20.28%
95.5th percentile

Affected Products

VendorProductVersions
Ubuntu:22.04:LTSklibc2.0.10-4, 2.0.10-3, 2.0.8-6.1ubuntu2
Ubuntu:20.04:LTSzsync0.6.2-3ubuntu1, 0
Ubuntu:18.04:LTSzsync0.6.2-2ubuntu1, 0, 0.6.2-3ubuntu1
Ubuntu:Pro:18.04:LTSklibc2.0.4-9ubuntu2, 0, 2.0.4-9ubuntu1
Ubuntu:16.04:LTSzlib0, 1:1.2.8.dfsg-2ubuntu4, 1:1.2.8.dfsg-2ubuntu4.1
Ubuntu:24.04:LTSklibc2.0.13-2, 2.0.13-1, 0
Ubuntu:22.04:LTSzsync0, 0.6.2-3ubuntu1
Ubuntu:20.04:LTSklibc2.0.7-1ubuntu1, 2.0.6-1ubuntu2, 2.0.6-1ubuntu1
Ubuntu:16.04:LTSzsync0, 0.6.2-1ubuntu1
Ubuntu:24.04:LTSzsync0, 0.6.2-5, 0.6.2-5build1
Ubuntu:Pro:16.04:LTSklibc2.0.4-8ubuntu1.16.04.1, 0, 2.0.3-0ubuntu1
Ubuntu:16.04:LTSrsync3.1.1-3ubuntu1.1, 0, 3.1.1-3
Ubuntu:20.04:LTSrsync0
Ubuntu:25.10zsync0, 0.6.2-7ubuntu1, 0.6.2-8
Ubuntu:Pro:14.04:LTSklibc2.0.3-0ubuntu1.14.04.3+esm2, 2.0.3-0ubuntu1.14.04.2, 2.0.3-0ubuntu1.14.04.1
Ubuntu:Pro:14.04:LTSzlib1:1.2.8.dfsg-1ubuntu1.1, 1:1.2.8.dfsg-1ubuntu1.1+esm3, 1:1.2.8.dfsg-1ubuntu1.1+esm2
Ubuntu:18.04:LTSrsync3.1.2-2.1ubuntu1, 0, 3.1.2-2
Ubuntu:25.10klibc0

Timeline

References

Open in Interactive Console →