Information on source package zeromq3

Available versions

ReleaseVersion
stretch4.2.1-4+deb9u2
stretch (security)4.2.1-4+deb9u4
buster4.3.1-4+deb10u2
bullseye4.3.4-1
bookworm4.3.4-1
sid4.3.4-1

Open issues

BugstretchbusterbullseyebookwormsidDescription
CVE-2021-20237vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedAn uncontrolled resource consumption (memory leak) flaw was found in Z ...
CVE-2021-20236vulnerable (no DSA, ignored)vulnerable (no DSA)fixedfixedfixedA flaw was found in the ZeroMQ server in versions before 4.3.3. This f ...
CVE-2021-20235fixedvulnerable (no DSA)fixedfixedfixedThere's a flaw in the zeromq server in versions before 4.3.3 in src/de ...
CVE-2021-20234fixedvulnerable (no DSA)fixedfixedfixedAn uncontrolled resource consumption (memory leak) flaw was found in t ...

Resolved issues

BugDescription
CVE-2020-36400ZeroMQ libzmq 4.3.3 has a heap-based buffer overflow in zmq::tcp_read, ...
CVE-2020-15166In ZeroMQ before version 4.3.3, there is a denial-of-service vulnerabi ...
CVE-2019-13132In ZeroMQ libzmq before 4.0.9, 4.1.x before 4.1.7, and 4.2.x before 4. ...
CVE-2019-6250A pointer overflow, with code execution, was discovered in ZeroMQ libz ...
CVE-2014-9721libzmq before 4.0.6 and 4.1.x before 4.1.1 allows remote attackers to ...
CVE-2014-7203libzmq (aka ZeroMQ/C++) 4.0.x before 4.0.5 does not ensure that nonces ...
CVE-2014-7202stream_engine.cpp in libzmq (aka ZeroMQ/C++)) 4.0.5 before 4.0.5 allow ...

Security announcements

DSA / DLADescription
DLA-2588-1zeromq3 - security update
DLA-2443-1zeromq3 - security update
DSA-4761-1zeromq3 - security update
DSA-4477-1zeromq3 - security update
DLA-1849-1zeromq3 - security update
DSA-4368-1zeromq3 - security update
DSA-3255-1zeromq3 - security update

Search for package or bug name: Reporting problems