Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2026-27171
zlib before 1.3.2 allows CPU consumption via crc32_combine64 and crc32_combine_gen64 because x2nmodp can do right shifts within a loop that has no termination condition.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.0
EPSS Ranking
0.6%
CVSS Severity
CVSS v3 Score
2.9
References
https://7asecurity.com/blog/2026/02/zlib-7asecurity-audit/
https://7asecurity.com/reports/pentest-report-zlib-RC1.1.pdf
https://github.com/madler/zlib/issues/904
https://github.com/madler/zlib/releases/tag/v1.3.2
https://ostif.org/zlib-audit-complete/
https://7asecurity.com/reports/pentest-report-zlib-RC1.1.pdf
Products affected by CVE-2026-27171
Zlib
»
Zlib
»
Version:
1.2.12
cpe:2.3:a:zlib:zlib:1.2.12
Zlib
»
Zlib
»
Version:
1.2.13
cpe:2.3:a:zlib:zlib:1.2.13
Zlib
»
Zlib
»
Version:
1.3
cpe:2.3:a:zlib:zlib:1.3
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved