Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-10128

Опубликовано: 24 мар. 2017
Источник: debian
EPSS Низкий

Описание

Buffer overflow in the git_pkt_parse_line function in transports/smart_pkt.c in the Git Smart Protocol support in libgit2 before 0.24.6 and 0.25.x before 0.25.1 allows remote attackers to have unspecified impact via a crafted non-flush packet.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libgit2fixed0.25.1+really0.24.6-1package
libgit2no-dsajessiepackage
cargofixed0.17.0-1~exp1experimentalpackage
cargofixed0.17.0-1package

Примечания

  • https://github.com/libgit2/libgit2/commit/66e3774d279672ee51c3b54545a79d20d1ada834 (v0.25.1)

  • https://github.com/libgit2/libgit2/commit/4ac39c76c0153d1ee6889a0984c39e97731684b2 (v0.24.6)

EPSS

Процентиль: 86%
0.02867
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 8 лет назад

Buffer overflow in the git_pkt_parse_line function in transports/smart_pkt.c in the Git Smart Protocol support in libgit2 before 0.24.6 and 0.25.x before 0.25.1 allows remote attackers to have unspecified impact via a crafted non-flush packet.

CVSS3: 9.8
nvd
больше 8 лет назад

Buffer overflow in the git_pkt_parse_line function in transports/smart_pkt.c in the Git Smart Protocol support in libgit2 before 0.24.6 and 0.25.x before 0.25.1 allows remote attackers to have unspecified impact via a crafted non-flush packet.

CVSS3: 9.8
github
около 3 лет назад

Buffer overflow in the git_pkt_parse_line function in transports/smart_pkt.c in the Git Smart Protocol support in libgit2 before 0.24.6 and 0.25.x before 0.25.1 allows remote attackers to have unspecified impact via a crafted non-flush packet.

suse-cvrf
больше 8 лет назад

Security update for libgit2

suse-cvrf
больше 8 лет назад

Security update for libgit2

EPSS

Процентиль: 86%
0.02867
Низкий