elmore
August 30th, 2004, 16:34
Looks like there are some problems with zlib.

Article on undeadly:
http://undeadly.org/cgi?action=article&sid=20040830164731

OpenBSD 3.5 errata:
http://www.openbsd.org/errata.html

Here's a posting of what's affected:
http://undeadly.org/cgi?action=article&sid=20040830164731&pid=3

molotov
August 31st, 2004, 18:29
it should be noted the vulnerability is only for 3.5, and does not allow code execution, just crash the box