CAN-2005-2096 - zlib issue
David Shaw
dshaw at jabberwocky.com
Thu Jul 7 23:40:22 CEST 2005
On Wed, Jul 06, 2005 at 04:37:08PM +0200, Florian Weimer wrote:
> FreeBSD has just released a security advisory regarding zlib:
>
> http://lists.freebsd.org/pipermail/freebsd-announce/2005-July/001009.html
>
> Patch is expected to appear under:
>
> ftp://ftp.freebsd.org/pub/FreeBSD/CERT/patches/SA-05:16/zlib.patch
>
> You might want to update the bundled copy of zlib in GnuPG.
The bundled zlib is GnuPG is 1.1.4. To my understanding, it is not
vulnerable. The problem is only on zlib 1.2 and later.
David
More information about the Gnupg-devel
mailing list