enh <e...@google.com> writes:

> is there a CVE or PoC for the zlib bug? it seems like OpenBSD is the
> only place where this has been fixed, and none of the various
> upstreams/forks of zlib (of which there are far too many!) seem to
> have this?
>

See upstream:

https://github.com/madler/zlib/commit/eff308af425b67093bab25f80f1ae950166bece1

> On Thu, Aug 11, 2022 at 8:50 AM Alexander Bluhm <bl...@openbsd.org> wrote:
>>
>> Errata patches for zlib have been released for OpenBSD 7.0 and 7.1.
>>
>> Binary updates for the amd64, i386 and arm64 platform are available
>> via the syspatch utility.  Source code patches can be found on the
>> respective errata page:
>>
>>   https://www.openbsd.org/errata70.html
>>   https://www.openbsd.org/errata71.html
>>

Reply via email to