RHSA-2022:8420: Important: mingw-zlib security update
The zlib packages provide a general-purpose lossless data compression library that is used by many different programs.Security Fix(es): zlib: A flaw found in zlib when compressing (not decompressing) certain inputs (CVE-2018-25032) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Additional Changes:For detailed information on changes in this release, see the Red Hat Enterprise Linux 9.1 Release Notes linked from the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:8420?
RHSA-2022:8420 is classified as important due to a flaw in the zlib library when compressing certain inputs.
How do I fix RHSA-2022:8420?
To fix RHSA-2022:8420, upgrade the zlib packages to version 1.2.12-2.el9 or later.
What systems are affected by RHSA-2022:8420?
RHSA-2022:8420 affects multiple zlib packages including mingw-zlib, mingw32-zlib, and mingw64-zlib across various architectures.
What is the CVE associated with RHSA-2022:8420?
The vulnerability described in RHSA-2022:8420 is associated with CVE-2018-25032.
Is RHSA-2022:8420 related to data compression?
Yes, RHSA-2022:8420 pertains to a vulnerability found in the zlib data compression library.