{"id":"CGA-vmv4-c87m-mrhp","modified":"2026-09-07T01:52:22.664478846Z","published":"2025-10-30T21:34:48Z","upstream":["CVE-2016-9840","GHSA-wrj6-35fr-8xw5"],"references":[{"type":"WEB","url":"http://www.securityfocus.com/bid/95131"},{"type":"WEB","url":"https://wiki.mozilla.org/images/0/09/Zlib-report.pdf"},{"type":"WEB","url":"http://www.securitytracker.com/id/1039427"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2017:2999"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2017:3046"},{"type":"ADVISORY","url":"https://support.apple.com/HT208144"},{"type":"ADVISORY","url":"https://wiki.mozilla.org/MOSS/Secure_Open_Source/Completed#zlib"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2017:3047"},{"type":"ADVISORY","url":"https://lists.debian.org/debian-lts-announce/2019/03/msg00027.html"},{"type":"ADVISORY","url":"https://support.apple.com/HT208113"},{"type":"ADVISORY","url":"https://usn.ubuntu.com/4246-1/"},{"type":"ADVISORY","url":"http://lists.opensuse.org/opensuse-updates/2016-12/msg00127.html"},{"type":"ADVISORY","url":"https://security.gentoo.org/glsa/201701-56"},{"type":"ADVISORY","url":"https://support.apple.com/HT208115"},{"type":"ADVISORY","url":"http://lists.opensuse.org/opensuse-updates/2017-01/msg00050.html"},{"type":"ADVISORY","url":"http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html"},{"type":"ADVISORY","url":"https://www.oracle.com/security-alerts/cpujul2020.html"},{"type":"ADVISORY","url":"http://lists.opensuse.org/opensuse-updates/2017-01/msg00053.html"},{"type":"ADVISORY","url":"http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html"},{"type":"ADVISORY","url":"https://lists.debian.org/debian-lts-announce/2020/01/msg00030.html"},{"type":"ADVISORY","url":"https://support.apple.com/HT208112"},{"type":"ADVISORY","url":"https://usn.ubuntu.com/4292-1/"},{"type":"ADVISORY","url":"http://www.openwall.com/lists/oss-security/2016/12/05/21"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2017:1220"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2017:1222"},{"type":"ADVISORY","url":"https://security.gentoo.org/glsa/202007-54"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2017:1221"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2017:3453"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1402345"},{"type":"FIX","url":"https://github.com/madler/zlib/commit/6a043145ca6e9c55184013841a67b2fef87e44c0"},{"type":"WEB","url":"https://cert-portal.siemens.com/productcert/html/ssa-470355.html"}],"affected":[{"package":{"name":"openjdk-17-openj9-default-policy","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/openjdk-17-openj9-default-policy?arch=aarch64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.53.0-r0"}]}],"ecosystem_specific":{"components":[{"latest_event_timestamp":"2025-08-23T08:28:30Z","component_name":"openjdk-17-openj9-default-policy","component_version":"0.53.0-r0","component_type":"apk","component_location":"/.PKGINFO","component_purl":"pkg:apk/openjdk-17-openj9-default-policy@0.53.0-r0","latest_event_status":"fixed"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-vmv4-c87m-mrhp.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"}]}