Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Upgrade zlib to 1.2.13 #967

Closed
ulfllorenz opened this issue Oct 25, 2022 · 1 comment · Fixed by #1018
Closed

Upgrade zlib to 1.2.13 #967

ulfllorenz opened this issue Oct 25, 2022 · 1 comment · Fixed by #1018
Assignees
Milestone

Comments

@ulfllorenz
Copy link

I noticed that PyTables 3.7.0 ships a zlib.dll Version 1.2.11 under Windows. Given that 1.2.12 and 1.2.13 have fixed some seemingly severe CVEs, it seems as if an upgrade of zlib might be a good idea.

Note that I have not dug into the code, I just came across this issue more or less by accident and thought I'd contribute a little. The buffer overflows may not affect PyTables at all, in which case you may safely disregard this issue.

@avalentino avalentino added this to the 3.7.1 milestone Oct 25, 2022
@avalentino
Copy link
Member

Dear @ulfllorenz, thanks for reporting.
It seems a good idea indeed.

matham added a commit to matham/PyTables that referenced this issue Dec 20, 2022
@avalentino avalentino modified the milestones: 3.8.0, 3.8.1 Dec 28, 2022
avalentino added a commit to avalentino/PyTables that referenced this issue May 20, 2023
* hdf5 v1.14.1
* lz4 v1.9.4
* zlib v1.2.13
avalentino added a commit to avalentino/PyTables that referenced this issue May 20, 2023
* hdf5 v1.14.1
* lz4 v1.9.4
* zlib v1.2.13
@avalentino avalentino self-assigned this May 20, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging a pull request may close this issue.

3 participants
@avalentino @ulfllorenz and others