CAN-2005-2096 - zlib issue

David Shaw dshaw at jabberwocky.com
Thu Jul 7 23:40:22 CEST 2005


On Wed, Jul 06, 2005 at 04:37:08PM +0200, Florian Weimer wrote:
> FreeBSD has just released a security advisory regarding zlib:
> 
> http://lists.freebsd.org/pipermail/freebsd-announce/2005-July/001009.html
> 
> Patch is expected to appear under:
> 
> ftp://ftp.freebsd.org/pub/FreeBSD/CERT/patches/SA-05:16/zlib.patch
> 
> You might want to update the bundled copy of zlib in GnuPG.

The bundled zlib is GnuPG is 1.1.4.  To my understanding, it is not
vulnerable.  The problem is only on zlib 1.2 and later.

David



More information about the Gnupg-devel mailing list