Information on source package zeromq3

Available versions

stretch (security)4.2.1-4+deb9u3

Open issues

CVE-2021-20237vulnerable (no DSA)vulnerable (no DSA)fixedfixedMemory leaks via metadata messages processed by PUB sockets
CVE-2021-20236vulnerablevulnerablefixedfixedStack overflow on server running PUB/XPUB socket
CVE-2021-20235vulnerablevulnerablefixedfixedHeap overflow when receiving malformed ZMTP v1 packets
CVE-2021-20234vulnerablevulnerablefixedfixedMemory leak in client induced by malicious server without CURVE/ZAP

Resolved issues

CVE-2020-15166In ZeroMQ before version 4.3.3, there is a denial-of-service vulnerabi ...
CVE-2019-13132In ZeroMQ libzmq before 4.0.9, 4.1.x before 4.1.7, and 4.2.x before 4. ...
CVE-2019-6250A pointer overflow, with code execution, was discovered in ZeroMQ libz ...
CVE-2014-9721libzmq before 4.0.6 and 4.1.x before 4.1.1 allows remote attackers to ...
CVE-2014-7203libzmq (aka ZeroMQ/C++) 4.0.x before 4.0.5 does not ensure that nonces ...
CVE-2014-7202stream_engine.cpp in libzmq (aka ZeroMQ/C++)) 4.0.5 before 4.0.5 allow ...

Security announcements

DSA / DLADescription
DLA-2443-1zeromq3 - security update
DSA-4761-1zeromq3 - security update
DSA-4477-1zeromq3 - security update
DLA-1849-1zeromq3 - security update
DSA-4368-1zeromq3 - security update
DSA-3255-1zeromq3 - security update

Search for package or bug name: Reporting problems