Compress-Zlib-1.33 = zlib-1.1.4 (stable all arches) Compress-Zlib-1.34 = slib-1.2.2 (~arch vuln) Compress-Zlib-1.35 = zlib-1.2.3 (not vuln and not in the tree)
Created attachment 64485 [details, diff] Compress-Zlib-1.35 Updated version.
or even better, get the package to stop using the bundled one ... if you run a diff between the bundled version and a pristine zlib you'll see that there are no changes
I hadn't realized Paul had posted the update, sorry about that folks (this was a topic on the porters list about a week ago). Ebuild should be in the tree in the next few minutes
Arches please test and mark Compress-Zlib-1.35 stable.
stable on ppc64
Stable on sparc and x86
amd64 happy
Stable on hppa
ppc stable
stable on sh.
arm/ia64/s390 done
Stable on alpha.
GLSA 200508-01 mips don't forget to mark stable.
Stable on mips.