Description
zlib versions up to and including 1.3.1.2 include a global buffer overflow in the untgz utility located under contrib/untgz. The vulnerability is limited to the standalone demonstration utility and does not affect the core zlib compression library. The flaw occurs when a user executes the untgz command with an excessively long archive name supplied via the command line, leading to an out-of-bounds write in a fixed-size global buffer.
INFO
Published Date :
2026-01-07T20:25:19.892Z
Last Modified :
2026-03-05T01:30:07.359Z
Source :
VulnCheck
AFFECTED PRODUCTS
The following products are affected by CVE-2026-22184 vulnerability.
| Vendors | Products |
|---|---|
| Zlib |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2026-22184.
CVSS Vulnerability Scoring System
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact