CVE-2003-0107: Zlib

High severity, CVSS 7.5. EPSS: 26% chance of exploitation in the next 30 days.

Buffer overflow in the gzprintf function in zlib 1.1.4, when zlib is compiled without vsnprintf or when long inputs are truncated using vsnprintf, allows attackers to cause a denial of service or possibly execute arbitrary code.

Affected products

  • Zlib Zlib: version 1.1.4 only

Published 2003-03-07. Last modified 2026-06-16.