CEXT / manifest.c in Mercurial prima 4.7.2 ha un out-of-bounds lette durante l’analisi di una voce manifesta valido. |
https://www.mercurial-scm.org/repo/hg/rev/5405cb1a7901 https://www.mercurial-scm.org/wiki/WhatsNew#Mercurial_4.7.2_.282018-10-01.29 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-17983 |
Vulnerabilità: CVE-2018-17983
