From a631176d5d4ac241dfe921c721371ccd91a7f43f Mon Sep 17 00:00:00 2001 From: Meltie2013 Date: Fri, 15 Apr 2022 22:12:37 +0100 Subject: [PATCH] [Dep] Update zlib to 1.2.12 to fix CVE-2018-25032 notice **Purpose:** - zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches. This vulnerability is based on memory corruption, which could also be triggered inadvertently and cause malfunctions. - Ref Security Issue: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-25032 --- dep | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/dep b/dep index e41ffbc4..a00b8f87 160000 --- a/dep +++ b/dep @@ -1 +1 @@ -Subproject commit e41ffbc443a789cd0f76f9518860763052dce2c0 +Subproject commit a00b8f87891b55ef2dc741a84cdd641c4247d20f