HIGH 7.5 RubyGems

Nokogiri affected by zlib's Out-of-bounds Write vulnerability

GHSA-jc36-42cf-vqwj · CVE-2018-25032 · PSF-2022-3

Published · Modified

AI SAST

Find this class of vulnerability in your own code

Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.

Description

zlib 1.2.11 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.

References

Ready to move

Start Securing

Free, no credit card | First findings in minutes