High severity7.8NVD Advisory· Published Jan 3, 2021· Updated Jun 17, 2026
CVE-2020-35963
CVE-2020-35963
Description
flb_gzip_compress in flb_gzip.c in Fluent Bit before 1.6.4 has an out-of-bounds write because it does not use the correct calculation of the maximum gzip data-size expansion.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Fluent Bit/flb_gzipdescription
- Range: <1.6.4
Patches
Vulnerability mechanics
References
3- github.com/fluent/fluent-bit/commit/cadff53c093210404aed01c4cf586adb8caa07afnvdPatchThird Party Advisory
- bugs.chromium.org/p/oss-fuzz/issues/detailnvdExploitIssue TrackingThird Party Advisory
- fluentbit.io/announcements/v1.6.4/nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.