Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

fstec логотип

BDU:2026-12652

Опубликовано: 18 июл. 2026
Источник: fstec
CVSS3: 7.5
CVSS2: 7.8
EPSS Низкий

Описание

Уязвимость функции set_data() файла src/libgit2/transports/smart_pkt.c реализации методов Git на языке C Libgit2 связана с недостаточной проверкой вводимых данных. Эксплуатация уязвимости может позволить нарушителю, действующему удаленно, вызвать отказ в обслуживании

Вендор

Red Hat, Inc.
Amazon.com Inc.
Canonical Ltd.
Сообщество свободного программного обеспечения

Наименование ПО

Red Hat Enterprise Linux
Amazon Linux
Ubuntu
Debian GNU/Linux
Red Hat Enterprise Linux AI
Red Hat Hardened Images
Amazon Linux 2
Libgit2

Версия ПО

8 (Red Hat Enterprise Linux)
9 (Red Hat Enterprise Linux)
2023 (Amazon Linux)
24.04 LTS (Ubuntu)
10 (Red Hat Enterprise Linux)
13 (Debian GNU/Linux)
3 (Red Hat Enterprise Linux AI)
- (Red Hat Hardened Images)
26.04 LTS (Ubuntu)
Core (Amazon Linux 2)
до 1.8.6 (Libgit2)
до 1.9.5 (Libgit2)

Тип ПО

Операционная система
Прикладное ПО информационных систем

Операционные системы и аппаратные платформы

Red Hat, Inc. Red Hat Enterprise Linux 8
Red Hat, Inc. Red Hat Enterprise Linux 9
Amazon.com Inc. Amazon Linux 2023
Canonical Ltd. Ubuntu 24.04 LTS
Red Hat, Inc. Red Hat Enterprise Linux 10
Сообщество свободного программного обеспечения Debian GNU/Linux 13
Red Hat, Inc. Red Hat Enterprise Linux AI 3
Canonical Ltd. Ubuntu 26.04 LTS
Amazon.com Inc. Amazon Linux 2 Core

Уровень опасности уязвимости

Высокий уровень опасности (базовая оценка CVSS 2.0 составляет 7,8)
Высокий уровень опасности (базовая оценка CVSS 3.1 составляет 7,5)

Возможные меры по устранению уязвимости

Использование рекомендаций производителя:
https://github.com/libgit2/libgit2/security/advisories/GHSA-pm24-4jhq-3xvm
https://github.com/libgit2/libgit2/commit/d7a9fb87f504434e9f45228678953c4fa56e7640
https://github.com/libgit2/libgit2/commit/affda60c10fcef16723451c0d7dc71b71dc20ad3
https://github.com/libgit2/libgit2/commit/2c0ce8c0132ac38ab0db28239462a671e2e5440e
Для программных продуктов Red Hat Inc.
https://access.redhat.com/security/cve/cve-2026-53587
Для Debian GNU/Linux:
https://security-tracker.debian.org/tracker/CVE-2026-53587
Для Ubuntu:
https://ubuntu.com/security/CVE-2026-53587
Для Amazon Linux:
https://explore.alas.aws.amazon.com/CVE-2026-53587.html

Статус уязвимости

Подтверждена производителем

Наличие эксплойта

Существует в открытом доступе

Информация об устранении

Уязвимость устранена

Идентификаторы других систем описаний уязвимостей

EPSS

Процентиль: 40%
0.0047
Низкий

7.5 High

CVSS3

7.8 High

CVSS2

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 1 месяца назад

libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing to build Git functionality into your application. Prior to 1.8.6 and 1.9.5, libgit2 performs a fixed-size strncmp in set_data in src/libgit2/transports/smart_pkt.c without first verifying that the smart-protocol pkt-line capability buffer contains 14 bytes. A malicious Git server can make bytes after the pkt-line complete object-format=, causing format_str to advance beyond the pkt-line and the following memchr length calculation to underflow. The resulting heap out-of-bounds walk can crash a client during the first refs-advertisement packet over HTTP, HTTPS, SSH, or the Git protocol. This issue is fixed in versions 1.8.6 and 1.9.5.

CVSS3: 7.5
redhat
около 1 месяца назад

libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing to build Git functionality into your application. Prior to 1.8.6 and 1.9.5, libgit2 performs a fixed-size strncmp in set_data in src/libgit2/transports/smart_pkt.c without first verifying that the smart-protocol pkt-line capability buffer contains 14 bytes. A malicious Git server can make bytes after the pkt-line complete object-format=, causing format_str to advance beyond the pkt-line and the following memchr length calculation to underflow. The resulting heap out-of-bounds walk can crash a client during the first refs-advertisement packet over HTTP, HTTPS, SSH, or the Git protocol. This issue is fixed in versions 1.8.6 and 1.9.5.

CVSS3: 7.5
nvd
около 1 месяца назад

libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing to build Git functionality into your application. Prior to 1.8.6 and 1.9.5, libgit2 performs a fixed-size strncmp in set_data in src/libgit2/transports/smart_pkt.c without first verifying that the smart-protocol pkt-line capability buffer contains 14 bytes. A malicious Git server can make bytes after the pkt-line complete object-format=, causing format_str to advance beyond the pkt-line and the following memchr length calculation to underflow. The resulting heap out-of-bounds walk can crash a client during the first refs-advertisement packet over HTTP, HTTPS, SSH, or the Git protocol. This issue is fixed in versions 1.8.6 and 1.9.5.

CVSS3: 7.5
debian
около 1 месяца назад

libgit2 is a portable C implementation of the Git core methods provide ...

rocky
6 дней назад

Important: rust security update

EPSS

Процентиль: 40%
0.0047
Низкий

7.5 High

CVSS3

7.8 High

CVSS2