[Bug 252810] archivers/p7zip-codec-rar: patch for CVE-2018-10115

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Mon Jan 18 17:58:05 UTC 2021


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=252810

            Bug ID: 252810
           Summary: archivers/p7zip-codec-rar: patch for CVE-2018-10115
           Product: Ports & Packages
           Version: Latest
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Only Me
          Priority: ---
         Component: Individual Port(s)
          Assignee: rakuco at FreeBSD.org
          Reporter: scf at FreeBSD.org
             Flags: maintainer-feedback?(rakuco at FreeBSD.org)
          Assignee: rakuco at FreeBSD.org

Created attachment 221715
  --> https://bugs.freebsd.org/bugzilla/attachment.cgi?id=221715&action=edit
Patch to archivers/p7zip-codec-rar

Apply patch obtained from Debian[1] to fix CVE-2018-10115 vulnerability in the
p7zip rar codec handler.

This requires renaming files/patch-CVE-2018-5996 by prepending a zero to the
number since 10115 depends upon the prior patch being applied first.

1.
https://salsa.debian.org/debian/p7zip-rar/-/blob/cd8c3f633ea94b256fe108bf0b73176bcc0053c0/debian/patches/CVE-2018-10115.patch

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-ports-bugs mailing list