Potential Vulnerability in zlib Affects Multiple Vendors
CVE-2016-9843
9.8CRITICAL
What is CVE-2016-9843?
The crc32_big function in zlib 1.2.8 is susceptible to security risks that arise from improper handling of big-endian CRC calculations. This flaw may allow context-dependent attackers to affect system behavior, potentially leading to unintended consequences. It is crucial for users of zlib to be aware of this vulnerability and apply relevant security patches or updates to mitigate these risks.
References
EPSS Score
5% chance of being exploited in the next 30 days.
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
