Created attachment 190478 [details] Document CVE-2018-6758 The uwsgi_expand_path() function in core/utils.c in Unbit uWSGI before 2.0.16 has a stack-based buffer overflow via a large directory length. * CVE-2018-6758 * Summary: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-6758 * Release notes: https://github.com/unbit/uwsgi-docs/blob/master/Changelog-2.0.16.rst * Upstream fix: https://github.com/unbit/uwsgi/commit/ed1c3bbc6cfc4d566401526fd21ba0984dd7b22a
Documented in https://svnweb.freebsd.org/ports?view=revision&revision=461689