Skip to content

Fix potential vulnerable cloned function#292

Closed
npt-1707 wants to merge 1 commit intolibretro:masterfrom
npt-1707:fix_CVE-2018-25032
Closed

Fix potential vulnerable cloned function#292
npt-1707 wants to merge 1 commit intolibretro:masterfrom
npt-1707:fix_CVE-2018-25032

Conversation

@npt-1707
Copy link
Copy Markdown

Summary

Our tool detected a potential vulnerability in deps/zlib which was cloned from madler/zlib@5c44459 but did not receive the security patch. The original issue was reported and fixed under CVE-2018-25032.

Proposed Fix

Apply the same patch as the one in torvalds/linux to eliminate the vulnerability.

Reference

https://nvd.nist.gov/vuln/detail/CVE-2018-25032
madler/zlib@5c44459

@RobLoach
Copy link
Copy Markdown
Member

It may just be easier to upgrade to a latter version of zlib?

@RobLoach
Copy link
Copy Markdown
Member

ai slop

@RobLoach RobLoach closed this Mar 16, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants