The Un-Official Proxomitron Forum
zlib security flaw - Printable Version

+- The Un-Official Proxomitron Forum (https://www.prxbx.com/forums)
+-- Forum: Forum Related (/forumdisplay.php?fid=37)
+--- Forum: Proxomitron Program (/forumdisplay.php?fid=4)
+--- Thread: zlib security flaw (/showthread.php?tid=527)



zlib security flaw - z12 - Jul. 09, 2005 07:04 AM

According to this article here, http://www.eweek.com/article2/0,1895,1834632,00.asp

"A serious security flaw has been identified in Zlib,..."

Haven't heard much about this, and no mention about it on zlib's site, http://www.zlib.net/

I guess it's time to start keeping an eye open for an updated zlib thats compatible with proxomitron again. Sad

Mike


Re: zlib security flaw - sidki3003 - Jul. 11, 2005 04:18 PM

z12 Wrote:Haven't heard much about this, and no mention about it on zlib's site, http://www.zlib.net/
They added a statement yesterday.

sidki


- Kye-U - Jul. 11, 2005 04:20 PM

Quote:IMPORTANT NOTE: (July 10, 2005) A new security vulnerability has been discovered in which specially crafted input files can cause inflate to overwrite memory that follows the internal inflate state. This can cause the application to crash depending on what is overwritten. This vulnerability only affects versions 1.2.1 and 1.2.2. of zlib. Earlier versions, e.g. 1.1.4, are not affected.

A new version of zlib will be released soon to address this issue. Stay tuned.

Slow pokes Eyes Closed Smile


zlib... - ProxRocks - Jul. 11, 2005 04:30 PM

Will someone please be so kind as to update this thread when a new zlib is released? (I mean, I'd see it here much sooner than at zlib.net...)


- sidki3003 - Jul. 18, 2005 11:01 PM

v1.2.3 is out - thanks to an attentive prox-list user. Smile!

http://www.winimage.com/zLibDll/

sidki


- ProxRocks - Jul. 18, 2005 11:32 PM

AWESOME! Thanks...


- Kye-U - Jul. 19, 2005 12:26 AM

This will work for Proxomitron? Smile!


- Guest - Jul. 19, 2005 01:07 AM

Nothing blew up yet. Seems to work.


- Kye-U - Jul. 19, 2005 03:18 AM

http://74.53.146.215/paFileDB/pafiledb.php?action=file&id=59

Uploaded to our database Smile!


- z12 - Jul. 19, 2005 06:19 AM

It's working fine. Smile!

Thanks for the heads up sidki.

Mike