Published: 13 November 2017
An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "libarchive" component. It allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow and application crash) via a crafted archive file.
CVSS 3 base score: 7.8
It isn't clear if this affects the upstream libarchive or not.
marking as not-affected due to lack of details as of 2018-03-27