NVD: 2022/08/05 - CVSS v3.1
Base Score: 9.8:
Description:
zlib through 1.2.12 has a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header extra field.
NOTE: only applications that call inflateGetHeader are affected. Some common applications bundle the affected zlib source code but may be unable to call inflateGetHeader (e.g., see the nodejs/node reference)
The zlib third party is not directly used by FNP. It comes with Thales dongle support .
CVE-2022-37434 does not impact FNP directly .
The zlib will be upgraded to latest in Thales 8.5 LDK version which is planned for release in Oct 2022.
Related Articles
Vulnerability : CVE-2022-2097 and CVE-2022-2068 6Number of Views Vulnerability : CVE-2022-30190 and CVE-2022-30136 6Number of Views CVE-2022-37434: Zlib Vulnerability Impact on InstallShield 7Number of Views Impact of CVE-2017-5571 : Open Redirect Vulnerability in lmadmin Component of Flexera FlexNet Publisher 8Number of Views Suggest Software for tracking in Software Vulnerability Research 28Number of Views
Hi, I am Reva - Ask me anything.
No new updates
Thanks for the feedback!
Your feedback has been saved.Rate this response:
Add Additional feedback ( Optional )
Are you sure you want to cancel
the case creation?
Are you sure you want to cancel the case creation?
Are you sure you want to close this case
| Products | Region | Phone Numbers |
|---|---|---|
| FlexNet Operations FlexNet Embedded FlexNet Publisher FlexNet Connect FlexNet Code Insight InstallAnywhere InstallShield |
North America * |
+1 630-332-2513 (toll) +1 877-279-2853 (toll-free in North America) |
| Europe * |
+44 1925 944367 (toll) +44 800 047 8642 (toll-free in Europe) |
|
| Japan * | +81 3-4540-5335 (select option 2) | |
| Australia * |
+61 3 9895 2177 +61 1800 560 603 (toll-free in Australia) |
|
|
Usage Intelligence (formerly
Revulytics) Compliance Intelligence |
Please use the Case Portal to submit your support ticket or reach out to your Revenera contact. | |
Case id: 00001065
Activity: Status change: 2 hours ago