andreasmattsson
02/03/2022, 2:19 PMandreasmattsson
02/03/2022, 2:23 PMephemient
02/03/2022, 7:27 PMephemient
02/03/2022, 7:29 PMjlleitschuh
02/03/2022, 7:31 PMjlleitschuh
02/03/2022, 7:33 PMjlleitschuh
02/03/2022, 7:43 PMjlleitschuh
02/03/2022, 7:43 PMjlleitschuh
02/03/2022, 7:51 PMandreasmattsson
02/03/2022, 8:14 PMjlleitschuh
02/03/2022, 8:17 PMandreasmattsson
02/03/2022, 8:17 PMjlleitschuh
02/03/2022, 8:17 PMjlleitschuh
02/03/2022, 8:19 PMjlleitschuh
02/03/2022, 8:21 PMephemient
02/03/2022, 8:24 PMandreasmattsson
02/03/2022, 8:25 PMjlleitschuh
02/03/2022, 8:25 PMandreasmattsson
02/03/2022, 8:26 PMjlleitschuh
02/03/2022, 8:27 PM> We'll however investigate whether these functions were used in the Kotlin codebase and issue a CVE if we find those places vulnerable.
Just a heads-up: we've fixed usages of these functions in the Kotlin codebase and shipped this change with Kotlin 1.4.21. Now we're waiting for a CVE number to be assigned.Link not public, but anyone from Jetbrains who's curious and wants to refresh their memory: https://youtrack.jetbrains.com/issue/KT-42181#focus=Comments-27-4614214.0-0
jlleitschuh
02/03/2022, 8:27 PMjlleitschuh
02/03/2022, 8:28 PMandreasmattsson
02/03/2022, 8:29 PMandreasmattsson
02/03/2022, 8:46 PMjlleitschuh
02/03/2022, 8:53 PMjlleitschuh
02/03/2022, 8:54 PM