Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Containers
  • Support Cases
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Containers
  • Support Cases
  • Products & Services

    Products

    Support

    • Production Support
    • Development Support
    • Product Life Cycles

    Services

    • Consulting
    • Technical Account Management
    • Training & Certifications

    Documentation

    • Red Hat Enterprise Linux
    • Red Hat JBoss Enterprise Application Platform
    • Red Hat OpenStack Platform
    • Red Hat OpenShift Container Platform
    All Documentation

    Ecosystem Catalog

    • Red Hat Partner Ecosystem
    • Partner Resources
  • Tools

    Tools

    • Troubleshoot a product issue
    • Packages
    • Errata

    Customer Portal Labs

    • Configuration
    • Deployment
    • Security
    • Troubleshoot
    All labs

    Red Hat Insights

    Increase visibility into IT operations to detect and resolve technical issues before they impact your business.

    Learn More
    Go to Insights
  • Security

    Red Hat Product Security Center

    Engage with our Red Hat Product Security team, access security updates, and ensure your environments are not exposed to any known security vulnerabilities.

    Product Security Center

    Security Updates

    • Security Advisories
    • Red Hat CVE Database
    • Security Labs

    Keep your systems secure with Red Hat's specialized responses to security vulnerabilities.

    View Responses

    Resources

    • Security Blog
    • Security Measurement
    • Severity Ratings
    • Backporting Policies
    • Product Signing (GPG) Keys
  • Community

    Customer Portal Community

    • Discussions
    • Private Groups
    Community Activity

    Customer Events

    • Red Hat Convergence
    • Red Hat Summit

    Stories

    • Red Hat Subscription Value
    • You Asked. We Acted.
    • Open Source Communities
Or troubleshoot an issue.

Select Your Language

  • English
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Virtualization
  • Red Hat Identity Management
  • Red Hat Directory Server
  • Red Hat Certificate System
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Update Infrastructure
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat CloudForms
  • Red Hat OpenStack Platform
  • Red Hat OpenShift Container Platform
  • Red Hat OpenShift Data Science
  • Red Hat OpenShift Online
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat Single Sign On
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Thorntail
  • Red Hat build of Eclipse Vert.x
  • Red Hat build of OpenJDK
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Integration
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
  • Red Hat JBoss Data Virtualization
  • Red Hat Process Automation
  • Red Hat Process Automation Manager
  • Red Hat Decision Manager
All Products
Red Hat Product Errata RHSA-2005:569 - Security Advisory
Issued:
2005-07-06
Updated:
2005-07-06

RHSA-2005:569 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

zlib security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

Updated Zlib packages that fix a buffer overflow are now available for Red
Hat Enterprise Linux 4.

This update has been rated as having important security impact by the Red
Hat Security Response Team.

Description

Zlib is a general-purpose lossless data compression library which is used
by many different programs.

Tavis Ormandy discovered a buffer overflow affecting Zlib version 1.2 and
above. An attacker could create a carefully crafted compressed stream that
would cause an application to crash if the stream is opened by a user. As
an example, an attacker could create a malicious PNG image file which would
cause a web browser or mail viewer to crash if the image is viewed. The
Common Vulnerabilities and Exposures project assigned the name
CAN-2005-2096 to this issue.

Please note that the versions of Zlib as shipped with Red Hat Enterprise
Linux 2.1 and 3 are not vulnerable to this issue.

All users should update to these erratum packages which contain a patch
from Mark Adler which corrects this issue.

Solution

Before applying this update, make sure all previously released errata
relevant to your system have been applied.

This update is available via Red Hat Network. To use Red Hat Network,
launch the Red Hat Update Agent with the following command:

up2date

This will start an interactive process that will result in the appropriate
RPMs being upgraded on your system.

Affected Products

  • Red Hat Enterprise Linux Server 4 x86_64
  • Red Hat Enterprise Linux Server 4 ia64
  • Red Hat Enterprise Linux Server 4 i386
  • Red Hat Enterprise Linux Workstation 4 x86_64
  • Red Hat Enterprise Linux Workstation 4 ia64
  • Red Hat Enterprise Linux Workstation 4 i386
  • Red Hat Enterprise Linux Desktop 4 x86_64
  • Red Hat Enterprise Linux Desktop 4 i386
  • Red Hat Enterprise Linux for IBM z Systems 4 s390x
  • Red Hat Enterprise Linux for IBM z Systems 4 s390
  • Red Hat Enterprise Linux for Power, big endian 4 ppc

Fixes

(none)

CVEs

  • CVE-2005-2096

References

(none)

Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server 4

SRPM
zlib-1.2.1.2-1.1.src.rpm SHA-256: ee5db501b9ec58e76989d117b9abf7a860a7c2e3da7e34bf2f18ec03bdcd0e67
x86_64
zlib-1.2.1.2-1.1.i386.rpm SHA-256: e9e38d8ad9eb17b97dc4457d30b1c2dd72529b95341ec0689a6f74326c75b57a
zlib-1.2.1.2-1.1.i386.rpm SHA-256: e9e38d8ad9eb17b97dc4457d30b1c2dd72529b95341ec0689a6f74326c75b57a
zlib-1.2.1.2-1.1.x86_64.rpm SHA-256: 8d0fd822d0a164dae84ffb458ffa773cacc3a1fcf41d19eb1b6bc4ecf2e393fa
zlib-1.2.1.2-1.1.x86_64.rpm SHA-256: 8d0fd822d0a164dae84ffb458ffa773cacc3a1fcf41d19eb1b6bc4ecf2e393fa
zlib-devel-1.2.1.2-1.1.i386.rpm SHA-256: 30ec95336d1926b03f7a27428d8719c3ad7a54bfab151a1913be2c9010ce1607
zlib-devel-1.2.1.2-1.1.i386.rpm SHA-256: 30ec95336d1926b03f7a27428d8719c3ad7a54bfab151a1913be2c9010ce1607
zlib-devel-1.2.1.2-1.1.x86_64.rpm SHA-256: b72f81596d37c27ed1affd707da3b801132f336593fc84b7df5594924e086011
zlib-devel-1.2.1.2-1.1.x86_64.rpm SHA-256: b72f81596d37c27ed1affd707da3b801132f336593fc84b7df5594924e086011
ia64
zlib-1.2.1.2-1.1.i386.rpm SHA-256: e9e38d8ad9eb17b97dc4457d30b1c2dd72529b95341ec0689a6f74326c75b57a
zlib-1.2.1.2-1.1.i386.rpm SHA-256: e9e38d8ad9eb17b97dc4457d30b1c2dd72529b95341ec0689a6f74326c75b57a
zlib-1.2.1.2-1.1.ia64.rpm SHA-256: 8f261d018aa561adc1a5fd3d2731710d316d2a4bd50bec38d54ba679872540fb
zlib-1.2.1.2-1.1.ia64.rpm SHA-256: 8f261d018aa561adc1a5fd3d2731710d316d2a4bd50bec38d54ba679872540fb
zlib-devel-1.2.1.2-1.1.ia64.rpm SHA-256: 26f69757f9463083ec6ac4e51c4d5da7d0375f8714193f474a74d21126efa67c
zlib-devel-1.2.1.2-1.1.ia64.rpm SHA-256: 26f69757f9463083ec6ac4e51c4d5da7d0375f8714193f474a74d21126efa67c
i386
zlib-1.2.1.2-1.1.i386.rpm SHA-256: e9e38d8ad9eb17b97dc4457d30b1c2dd72529b95341ec0689a6f74326c75b57a
zlib-1.2.1.2-1.1.i386.rpm SHA-256: e9e38d8ad9eb17b97dc4457d30b1c2dd72529b95341ec0689a6f74326c75b57a
zlib-devel-1.2.1.2-1.1.i386.rpm SHA-256: 30ec95336d1926b03f7a27428d8719c3ad7a54bfab151a1913be2c9010ce1607
zlib-devel-1.2.1.2-1.1.i386.rpm SHA-256: 30ec95336d1926b03f7a27428d8719c3ad7a54bfab151a1913be2c9010ce1607

Red Hat Enterprise Linux Workstation 4

SRPM
zlib-1.2.1.2-1.1.src.rpm SHA-256: ee5db501b9ec58e76989d117b9abf7a860a7c2e3da7e34bf2f18ec03bdcd0e67
x86_64
zlib-1.2.1.2-1.1.i386.rpm SHA-256: e9e38d8ad9eb17b97dc4457d30b1c2dd72529b95341ec0689a6f74326c75b57a
zlib-1.2.1.2-1.1.x86_64.rpm SHA-256: 8d0fd822d0a164dae84ffb458ffa773cacc3a1fcf41d19eb1b6bc4ecf2e393fa
zlib-devel-1.2.1.2-1.1.i386.rpm SHA-256: 30ec95336d1926b03f7a27428d8719c3ad7a54bfab151a1913be2c9010ce1607
zlib-devel-1.2.1.2-1.1.x86_64.rpm SHA-256: b72f81596d37c27ed1affd707da3b801132f336593fc84b7df5594924e086011
ia64
zlib-1.2.1.2-1.1.i386.rpm SHA-256: e9e38d8ad9eb17b97dc4457d30b1c2dd72529b95341ec0689a6f74326c75b57a
zlib-1.2.1.2-1.1.ia64.rpm SHA-256: 8f261d018aa561adc1a5fd3d2731710d316d2a4bd50bec38d54ba679872540fb
zlib-devel-1.2.1.2-1.1.ia64.rpm SHA-256: 26f69757f9463083ec6ac4e51c4d5da7d0375f8714193f474a74d21126efa67c
i386
zlib-1.2.1.2-1.1.i386.rpm SHA-256: e9e38d8ad9eb17b97dc4457d30b1c2dd72529b95341ec0689a6f74326c75b57a
zlib-devel-1.2.1.2-1.1.i386.rpm SHA-256: 30ec95336d1926b03f7a27428d8719c3ad7a54bfab151a1913be2c9010ce1607

Red Hat Enterprise Linux Desktop 4

SRPM
zlib-1.2.1.2-1.1.src.rpm SHA-256: ee5db501b9ec58e76989d117b9abf7a860a7c2e3da7e34bf2f18ec03bdcd0e67
x86_64
zlib-1.2.1.2-1.1.i386.rpm SHA-256: e9e38d8ad9eb17b97dc4457d30b1c2dd72529b95341ec0689a6f74326c75b57a
zlib-1.2.1.2-1.1.x86_64.rpm SHA-256: 8d0fd822d0a164dae84ffb458ffa773cacc3a1fcf41d19eb1b6bc4ecf2e393fa
zlib-devel-1.2.1.2-1.1.i386.rpm SHA-256: 30ec95336d1926b03f7a27428d8719c3ad7a54bfab151a1913be2c9010ce1607
zlib-devel-1.2.1.2-1.1.x86_64.rpm SHA-256: b72f81596d37c27ed1affd707da3b801132f336593fc84b7df5594924e086011
i386
zlib-1.2.1.2-1.1.i386.rpm SHA-256: e9e38d8ad9eb17b97dc4457d30b1c2dd72529b95341ec0689a6f74326c75b57a
zlib-devel-1.2.1.2-1.1.i386.rpm SHA-256: 30ec95336d1926b03f7a27428d8719c3ad7a54bfab151a1913be2c9010ce1607

Red Hat Enterprise Linux for IBM z Systems 4

SRPM
zlib-1.2.1.2-1.1.src.rpm SHA-256: ee5db501b9ec58e76989d117b9abf7a860a7c2e3da7e34bf2f18ec03bdcd0e67
s390x
zlib-1.2.1.2-1.1.s390.rpm SHA-256: 09dc62cd25d4f6f15856fb0d061cccabe3ccb5d3a96bdeec580534606d11cd73
zlib-1.2.1.2-1.1.s390x.rpm SHA-256: 09dd97e17bfc5e838a142434dfd41500efa5a521138e82331f59623b3e74befb
zlib-devel-1.2.1.2-1.1.s390.rpm SHA-256: e4139ed3d8f45b048dff2eb1bfd508ffc212c9da31255a64f322ecfc41069133
zlib-devel-1.2.1.2-1.1.s390x.rpm SHA-256: 6b3602cb2c3b31d9cb620b36ef4c53e20c9004e72797f91d1da284a13c7292e0
s390
zlib-1.2.1.2-1.1.s390.rpm SHA-256: 09dc62cd25d4f6f15856fb0d061cccabe3ccb5d3a96bdeec580534606d11cd73
zlib-devel-1.2.1.2-1.1.s390.rpm SHA-256: e4139ed3d8f45b048dff2eb1bfd508ffc212c9da31255a64f322ecfc41069133

Red Hat Enterprise Linux for Power, big endian 4

SRPM
zlib-1.2.1.2-1.1.src.rpm SHA-256: ee5db501b9ec58e76989d117b9abf7a860a7c2e3da7e34bf2f18ec03bdcd0e67
ppc
zlib-1.2.1.2-1.1.ppc.rpm SHA-256: 1253b782feb91e4385487dc5503730e328e0b29d7ebc71d210a4a5736d61e503
zlib-1.2.1.2-1.1.ppc64.rpm SHA-256: 09162df3944eca4c75b8bbf11c6030364213bd84fd02d407f1721e9ec8202fda
zlib-devel-1.2.1.2-1.1.ppc.rpm SHA-256: 4c5229c8787c2992b0a47d3edf605855f9eede148c33f56526746ec2089ec945
zlib-devel-1.2.1.2-1.1.ppc64.rpm SHA-256: 0ef87a5255372da8942a93c38ad318bd4d1ea494b8ffb78d78adf0f66ad613e7

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

About

  • Red Hat Subscription Value
  • About Red Hat
  • Red Hat Jobs
Copyright © 2023 Red Hat, Inc.
  • Privacy Statement
  • Customer Portal Terms of Use
  • All Policies and Guidelines
Red Hat Summit
Twitter