CVE-2026-27171

zlib before 1.3.2 allows CPU consumption via crc32_combine64 and crc32_combine_gen64 because x2nmodp can do right shifts within a loop that has no termination condition.
Configurations

Configuration 1 (hide)

cpe:2.3:a:zlib:zlib:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-02-18 04:16

Updated : 2026-03-25 21:27


NVD link : CVE-2026-27171

Mitre link : CVE-2026-27171

CVE.ORG link : CVE-2026-27171


JSON object : View

Products Affected

zlib

  • zlib
CWE
CWE-1284

Improper Validation of Specified Quantity in Input