Missing fix for CVE-2022-37434 in zlib1g in focal
Asked by
Felix Herrmann
There is a crictical security issue with zlib tracked here [1]
As far as I can see, the newest version in bionic [2] already has a security patch for it but the one in the focal [3] does not, as far as I could gather from their respective changelogs in the right hand side panel.
Since zlib is loaded by lots of software, e.g. the apache weg server, this could be a problem. It seems that both focal as well as bionic use the same base zlib version (1.2.11), so maybe the patch there could be recycled?
Would it be possible to get a fix for the CVE in focal as well?
[1] CVE: https:/
[2] Bionic Package: https:/
[3] Focal Package: https:/
Question information
- Language:
- English Edit question
- Status:
- Solved
- For:
- Ubuntu zlib Edit question
- Assignee:
- No assignee Edit question
- Solved by:
- Felix Herrmann
- Solved:
- Last query:
- Last reply:
To post a message you must log in.