Aug
04

Zend have posted this important security update for Zend Core for IBM

A security flaw was discovered in the zlib library.
zlib is a general-purpose lossless data compression library that is
used by Zend Core.

An attacker could create a carefully crafted compressed stream that
would cause an application to crash if the stream is opened by a user.
The Common Vulnerabilities and Exposures project (cve.mitre.org)
assigned the name CAN-2005-1849 to this issue.
This update has been rated as having an important security impact by
the Zend Core Team.

A HotFix that includes an updated zlib that fix a buffer overflow is
now available for Zend Core. The solution is available exclusively for Zend Core subscribed customers.

Tags: No Tags

No Responses

Leave a Response

XHTML: You can use these tags: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <code> <em> <i> <strike> <strong>