HomeDefectsLIN1023-18944
Acknowledged

LIN1023-18944 : Security Advisory - zlib - CVE-2026-27171

Created: Feb 25, 2026    Updated: Mar 11, 2026
Found In Version: 10.23.30.2
Severity: Standard
Applicable for: Wind River Linux LTS 23
Component/s: Userspace

Description

zlib before 1.3.2 allows CPU consumption via crc32_combine64 and crc32_combine_gen64 because x2nmodp can do right shifts within a loop that has no termination condition.