davisKing dlib Out-of-Bounds Write Vulnerability in Inflate Function

Vulnerability

A classic buffer overflow vulnerability has been identified in the dlib library by davisKing, specifically within the external zlib modules. This out-of-bounds write issue arises in the inflate function, which was cloned from zlib but did not incorporate a crucial security patch. The vulnerability affects dlib versions prior to 19.24.9.

Impact

Exploitation of this vulnerability leads to a buffer overflow, allowing for out-of-bounds writes that could potentially be exploited to execute arbitrary code or cause a crash.

Remediation

Users can upgrade to dlib version 19.24.9 or later to address this vulnerability.

Added: Jan 27, 2026, 9:34 AM
Updated: Jan 27, 2026, 3:37 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
1.3
exploitability
6.6
remediation
0.0
relevance
2.4
threat
0.0
urgency
5.7
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.