7-Zip-JBinding-4Android
7-Zip-JBinding-4Android copied to clipboard
CVE-2017-17969 & CVE-2018-5996 needs update to P7Zip framework
Vulnerability links:
More details about CVE-2017-17969 impact can be found here — https://landave.io/2018/01/7-zip-multiple-memory-corruptions-via-rar-and-zip/
Required fix Update P7Zip framework to 18.00 or above to resolve this vulnerability.
Thanks for reporting this.
Can you create an issue about this in project sevenzipjbinding. This is the Java library on which this project is based on.