The inflateMark function in inflate.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving left shifts of negative integers.
{ "vanir_signatures": [ { "digest": { "line_hashes": [ "197951099598945818012665496059597381937", "218058564149337140627069730938953305528", "35461147203123204953544851692249115489", "21791617784595784373422247518836318906", "72931159308314729243247753659745241410", "146904977187427878309415323339916421278" ], "threshold": 0.9 }, "id": "CVE-2016-9842-3b57fccc", "source": "https://github.com/madler/zlib/commit/e54e1299404101a5a9d0cf5e45512b543967f958", "target": { "file": "inflate.c" }, "signature_type": "Line", "deprecated": false, "signature_version": "v1" } ] }