Summary
Setups built out of InstallShield use zlib version 1.2.11 which has a known vulnerability CVE-2018-25032 which is resolved in zlib version 1.2.12. Please note that the vulnerability can't be exploited when using installers built of InstallShield. The library can be exploited only during 'deflating' (compressing) process. zlib is not used for compressing when installers are run. However, we are providing a hotfix as a pre-emptive measure to ensure that installers pass through security scans without any issues
Affected InstallShield Versions
This vulnerability affects InstallShield 2021 and below
Resolution
Engineering has released a hotfix that resolves this issue by updating the old Zlib version 1.2.11 to 1.2.12
Hotfix Links
InstallShield 2021 R2: Download Hotfix
InstallShield 2020 R3 SP1: Download Hotfix
InstallShield 2019 R3: Download Hotfix
InstallShield 2018 and below: Customers are encouraged to upgrade to InstallShield 2019 or above
Related Articles
Vulnerability - CVE-2018-25032 - zlib 1.2.11 6Number of Views HOTFIX: Vulnerabilities in installers created from InstallShield 2018 R2 due to zlib 1.2.3 4Number of Views HOTFIX: Zlib 1.2.3 version vulnerability in InstallShield 2018 6Number of Views CVE-2023-45853: Zlib Vulnerability mpact on InstallShield 10Number of Views CVE-2022-37434: Zlib Vulnerability Impact on InstallShield 7Number of Views
Hi, I am Reva - Ask me anything.
No new updates
Thanks for the feedback!
Your feedback has been saved.Rate this response:
Add Additional feedback ( Optional )
Are you sure you want to cancel
the case creation?
Are you sure you want to cancel the case creation?
Are you sure you want to close this case
| Products | Region | Phone Numbers |
|---|---|---|
| FlexNet Operations FlexNet Embedded FlexNet Publisher FlexNet Connect FlexNet Code Insight InstallAnywhere InstallShield |
North America * |
+1 630-332-2513 (toll) +1 877-279-2853 (toll-free in North America) |
| Europe * |
+44 1925 944367 (toll) +44 800 047 8642 (toll-free in Europe) |
|
| Japan * | +81 3-4540-5335 (select option 2) | |
| Australia * |
+61 3 9895 2177 +61 1800 560 603 (toll-free in Australia) |
|
|
Usage Intelligence (formerly
Revulytics) Compliance Intelligence |
Please use the Case Portal to submit your support ticket or reach out to your Revenera contact. | |
Case id: 00001065
Activity: Status change: 2 hours ago