[lxml] Re: zlib error

2022-12-15 Thread Ajayi, Temitope
Thank you for your response I am using the pre-built binary wheels through pip install lxml When I looked through the files, I noticed in the path lxml/includes/extlibs that the zlib.h file in that folder says version 1.2.11 for the latest version of lxml which is 4.9.2. Am I doing something

[lxml] Re: zlib error

2022-12-15 Thread Stefan Behnel
Hi, Ajayi, Temitope schrieb am 14.12.22 um 17:21: It seems the version of zlib used in lxml is outdated. It currently shows up as zlib 1.2.11 instead of zlib 1.2.13 on scan reports and therefore vulnerable to CVE-2018-25032 and CVE-2022-37434. Can I get some help on if this is correct or I