zelon88 / HRCloud2

A full-featured home hosted Cloud Drive, Personal Assistant, App Launcher, File Converter, Streamer, Share Tool & More!

Home Page:https://www.HonestRepair.net

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Statement on CVE-2018-10115

zelon88 opened this issue · comments

CVE-2018-10115 affects the HRCloud2 dependency 7zipper, so I figured I should evaluate it's impact on the project.

It appears that since HRC2 uses 7z in a headless way within a Linux environment that the conditions for exploitation of CVE-2018-10115 do not exist.

Still, it is highly recommended that users update 7z to v18.05 ASAP to avoid unnecessary risk to their servers and data.

https://www.7-zip.org/7z.html