Description
The inflateMark function in inflate.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving left shifts of negative integers.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1725-1 | rsync security update |
Debian DLA |
DLA-2085-1 | zlib security update |
EUVD |
EUVD-2016-10642 | The inflateMark function in inflate.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving left shifts of negative integers. |
Ubuntu USN |
USN-4246-1 | zlib vulnerabilities |
Ubuntu USN |
USN-4292-1 | rsync vulnerabilities |
References
History
Thu, 04 Dec 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-1335 | |
| Metrics |
ssvc
|
Wed, 28 Aug 2024 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Zlib
Zlib zlib |
|
| CPEs | cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:* |
cpe:2.3:a:zlib:zlib:*:*:*:*:*:*:*:* cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:esm:*:*:* |
| Vendors & Products |
Gnu
Gnu zlib |
Zlib
Zlib zlib |
Subscriptions
Apple
Subscribe
Iphone Os
Subscribe
Mac Os X
Subscribe
Tvos
Subscribe
Watchos
Subscribe
Canonical
Subscribe
Ubuntu Linux
Subscribe
Debian
Subscribe
Debian Linux
Subscribe
Nodejs
Subscribe
Node.js
Subscribe
Opensuse
Subscribe
Leap
Subscribe
Opensuse
Subscribe
Oracle
Subscribe
Database Server
Subscribe
Jdk
Subscribe
Jre
Subscribe
Mysql
Subscribe
Redhat
Subscribe
Enterprise Linux Desktop
Subscribe
Enterprise Linux Eus
Subscribe
Enterprise Linux Server
Subscribe
Enterprise Linux Workstation
Subscribe
Network Satellite
Subscribe
Rhel Extras
Subscribe
Rhel Extras Oracle Java
Subscribe
Satellite
Subscribe
Zlib
Subscribe
Zlib
Subscribe
Status: PUBLISHED
Assigner: microfocus
Published:
Updated: 2025-12-04T16:36:07.397Z
Reserved: 2016-12-05T00:00:00.000Z
Link: CVE-2016-9842
Updated: 2024-08-06T02:59:03.495Z
Status : Deferred
Published: 2017-05-23T04:29:01.837
Modified: 2025-12-04T17:15:51.660
Link: CVE-2016-9842
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD
Ubuntu USN