[Bug 228239] archivers/p7zip: Current version is vulnerable (CVE-2018-10115)

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Mon May 14 09:18:08 UTC 2018


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=228239

            Bug ID: 228239
           Summary: archivers/p7zip: Current version is vulnerable
                    (CVE-2018-10115)
           Product: Ports & Packages
           Version: Latest
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Many People
          Priority: ---
         Component: Individual Port(s)
          Assignee: rakuco at FreeBSD.org
          Reporter: i.dani at outlook.com
          Assignee: rakuco at FreeBSD.org
             Flags: maintainer-feedback?(rakuco at FreeBSD.org)

The current version 16.02_1 has a critical vulnerability.

https://landave.io/2018/05/7-zip-from-uninitialized-memory-to-remote-code-execution/

https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=897674

https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-10115

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-ports-bugs mailing list