Buffer overflow in zlib - CVE-2026-27820

 

Buffer overflow in zlib - CVE-2026-27820

Published: April 21, 2026 / Updated: April 21, 2026


Vulnerability identifier: #VU126646
CSH Severity: High
CVSS v4: 8.6 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-27820
CWE-ID: CWE-120
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to cause memory corruption.

The vulnerability exists due to buffer overflow in zstream_buffer_ungets() function when parsing input within the Zlib::GzipReader. A remote attacker can provide crafted input that causes the buffer length to exceed its capacity to cause memory corruption.

User interaction is required.


Affected software

zlib
SUSE Linux Enterprise Desktop 15
SUSE Linux Enterprise Real Time 15
SUSE Linux Enterprise Server 15
SUSE Linux Enterprise Server for SAP Applications 15
Basesystem Module
openEuler
rubygem-rss
rubygem-io-console
rubygem-typeprof
rubygem-did_you_mean
ruby2.5
ruby2.5-debuginfo
libruby2_5-2_5
ruby2.5-debugsource
ruby2.5-devel-extra
libruby2_5-2_5-debuginfo
ruby2.5-stdlib-debuginfo
ruby2.5-devel
ruby2.5-stdlib
rubygem-json
rubygem-rbs
rubygem-openssl
rubygem-bigdecimal
ruby-bundled-gems
ruby-help
ruby-devel
ruby-debugsource
ruby-irb
ruby-debuginfo
ruby
rubygem-rexml
rubygems-devel
rubygems
rubygem-test-unit
rubygem-psych
rubygem-minitest
rubygem-rdoc
rubygem-rake

How to mitigate CVE-2026-27820

Install security update from vendor's website.

zlib - addressed in versions 3.0.1, 3.1.2, 3.2.3
rubygem-rss - update to 0.2.9-157
rubygem-io-console - update to 0.6.0-157
rubygem-typeprof - update to 0.21.3-157
rubygem-did_you_mean - update to 1.6.3-157
ruby2.5 - update to 2.5.9-150700.24.6.1
ruby2.5-debuginfo - update to 2.5.9-150700.24.6.1
libruby2_5-2_5 - update to 2.5.9-150700.24.6.1
ruby2.5-debugsource - update to 2.5.9-150700.24.6.1
ruby2.5-devel-extra - update to 2.5.9-150700.24.6.1
libruby2_5-2_5-debuginfo - update to 2.5.9-150700.24.6.1
ruby2.5-stdlib-debuginfo - update to 2.5.9-150700.24.6.1
ruby2.5-devel - update to 2.5.9-150700.24.6.1
ruby2.5-stdlib - update to 2.5.9-150700.24.6.1
rubygem-json - update to 2.6.3-157
rubygem-rbs - update to 2.8.2-157
rubygem-openssl - update to 3.1.0-157
rubygem-bigdecimal - update to 3.1.3-157
ruby-bundled-gems - update to 3.2.2-157
ruby-help - update to 3.2.2-157
ruby-devel - update to 3.2.2-157
ruby-debugsource - update to 3.2.2-157
ruby-irb - update to 3.2.2-157
ruby-debuginfo - update to 3.2.2-157
ruby - update to 3.2.2-157
rubygem-rexml - update to 3.2.5-157
rubygems-devel - update to 3.4.10-157
rubygems - update to 3.4.10-157
rubygem-test-unit - update to 3.5.7-157
rubygem-psych - update to 5.0.1-157
rubygem-minitest - update to 5.16.3-157
rubygem-rdoc - update to 6.5.0-157
rubygem-rake - update to 13.0.6-157

External References

Related Security Bulletins