[Zlib-announce] zlib 1.2.3 released

Mark Adler madler at alumni.caltech.edu
Thu Jul 21 19:10:13 CDT 2005


zlib users,

zlib verison 1.2.3 has been released.  It eliminates a newly discovered 
security vulnerability in zlib 1.2.2 for which specially crafted 
compressed input can cause inflate to overflow a fixed-size array in 
the internal inflate data structure.  All users of zlib 1.2.1 or 1.2.2 
should upgrade to zlib 1.2.3.  It is available here:

     http://www.zlib.net/

For now, you should use the first link for each of the distribution 
files, the one on zlib.net, as not all of the links work yet.

Mark Adler




More information about the Zlib-announce mailing list