VDB

CVE-2016-9842

CVE-2016-9842 PUBLISHED

The inflateMark function in inflate.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving left shifts of negative integers.

EPSS 12.60% · 94.1th percentile

Risk Scores

EPSS Score
12.60%
94.1th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSzlib0, 1:1.2.8.dfsg-2ubuntu4.1, 1:1.2.8.dfsg-2ubuntu4
Ubuntu:25.10zsync0, 0.6.2-7ubuntu1, 0.6.2-8
Ubuntu:22.04:LTSzsync0.6.2-3ubuntu1, 0
Ubuntu:20.04:LTSzsync0.6.2-3ubuntu1, 0
Ubuntu:16.04:LTSzsync0.6.2-1ubuntu1, 0
Ubuntu:20.04:LTSrsync0
Ubuntu:24.04:LTSzsync0.6.2-5, 0, 0.6.2-5build1
Ubuntu:18.04:LTSzsync0, 0.6.2-2ubuntu1, 0.6.2-3ubuntu1
Ubuntu:Pro:14.04:LTSzlib*, *, 1:1.2.8.dfsg-1ubuntu1.1+esm3
Ubuntu:16.04:LTSrsync3.1.1-3ubuntu1, 3.1.1-3ubuntu1.1, 3.1.1-3ubuntu1.2
Ubuntu:18.04:LTSrsync3.1.2-2.1, 3.1.2-2, 3.1.2-2.1ubuntu1

Timeline

  • May 23, 2017 CVE Published
  • Jan 6, 2021 CVE Updated
  • Feb 4, 2022 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Nov 8, 2023 EPSS Score
  • Aug 29, 2024 EPSS Score
  • Mar 17, 2025 EPSS Score
  • Mar 21, 2025 EPSS Score
  • Mar 29, 2025 EPSS Score
  • Mar 30, 2025 EPSS Score
  • Jun 28, 2025 EPSS Score
  • Jul 21, 2025 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›