This bug was fixed in the package p7zip-rar - 16.02-3
---------------
p7zip-rar (16.02-3) unstable; urgency=medium
* Hopefully fix uninitialized memory access (CVE-2018-10115)
by applying changes described at
https://landave.io/files/patch_7zip_CVE-2018-10115.txt
(closes: #897674, LP: #1768984).
* debian/control:
+ switch VCS fields to salsa;
+ set Rules-Requires-Root to no;
+ Standards-Version: 4.1.4.
* debian/copyright: add a short comment explaining why this package
is non-free (lintian).
-- Robert Luberda <[email protected]> Wed, 30 May 2018 09:04:26 +0200
** Changed in: p7zip-rar (Ubuntu)
Status: Incomplete => Fix Released
** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-10115
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1768984
Title:
CVE-2018-10115 impacts p7zip-rar
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/p7zip-rar/+bug/1768984/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs