Family: SuSE Local Security Checks --> Category: infos
SUSE-SA:2005:043: zlib Vulnerability Scan
Vulnerability Scan Summary
Check for the version of the zlib package
Detailed Explanation for this Vulnerability Test
The remote host is missing the patch for the advisory SUSE-SA:2005:043 (zlib).
The previous zlib update for CVE-2005-2096 fixed a flaw in zlib that
could allow a carefully crafted compressed stream to crash an
application. While the original patch corrected the reported
overflow, Markus Oberhumer discovered additional ways a stream could
trigger an overflow. This update fixes those problems as well.
This issue is tracked by the Mitre CVE ID CVE-2005-1849.
Since only zlib 1.2.x is affected, older SUSE products are not
affected by this problem.
Solution : http://www.suse.de/security/advisories/2005_43_zlib.html
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.