Buffer Overflow in zlib 1.1.4 Compromises Security
CVE-2003-0107

Currently unrated

Key Information:

Vendor

Zlib

Status
Vendor
CVE Published:
7 March 2003

What is CVE-2003-0107?

A buffer overflow vulnerability exists in the gzprintf function of zlib 1.1.4 when compiled without vsnprintf or when long input strings are improperly truncated with vsnprintf. This flaw may allow an attacker to exploit the system by causing a denial of service or potentially executing arbitrary code, posing a significant risk to applications relying on vulnerable versions of the zlib library.

References

EPSS Score

25% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.