The Lab · 2026-04-16 14:23:11 · GitHub Issues
A critical global buffer overflow vulnerability in zlib, tracked as CVE-2026-22184, has been patched across multiple Docker build configurations. The flaw resides in the `TGZfname()` function of zlib's untgz utility and can be triggered when processing an archive with a name exceeding 1024 bytes. Successful exploitatio...
The Lab · 2026-04-22 20:27:31 · GitHub Issues
Automated security scanning has identified a persistent high-severity vulnerability affecting specific PHP 8.4 Docker images built on Alpine Linux 3.23. The vulnerability, tracked as CVE-2026-22184, centers on a known flaw in zlib version 1.3.1-r2, with a patched alternative available in version 1.3.2-r0.
The affected...
The Lab · 2026-05-01 00:54:14 · GitHub Issues
A critical algorithmic vulnerability in the widely deployed zlib compression library has been identified, raising concerns across the technology sector. The flaw, tracked as CVE-2026-27171, resides in the crc32_combine64 and crc32_combine_gen64 functions, where the underlying x2nmodp helper routine contains a loop cons...