Launch Week Day 1: Announcing Security Design Review
HIGH 7.5 RubyGems

Nokogiri affected by zlib's Out-of-bounds Write vulnerability

GHSA-jc36-42cf-vqwj · CVE-2018-25032 · PSF-2022-3

Published · Modified

Description

zlib 1.2.11 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.

References

Ready to move

Start Securing

Free, no credit card | First findings in minutes