Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rrjw-j4m2-mf34

Опубликовано: 25 сент. 2023
Источник: github
Github: Прошло ревью
CVSS3: 4.1

Описание

gix-transport code execution vulnerability

The gix-transport crate prior to the patched version 0.36.1 would allow attackers to use malicious ssh clone URLs to pass arbitrary arguments to the ssh program, leading to arbitrary code execution.

PoC: gix clone 'ssh://-oProxyCommand=open$IFS-aCalculator/foo'

This will launch a calculator on OSX.

See https://secure.phabricator.com/T12961 for more details on similar vulnerabilities in git.

Thanks for vin01 for disclosing this issue.

Пакеты

Наименование

gix-transport

rust
Затронутые версииВерсия исправления

< 0.36.1

0.36.1

EPSS

Процентиль: 2%
0.00014
Низкий

4.1 Medium

CVSS3

Дефекты

CWE-78
CWE-88

Связанные уязвимости

CVSS3: 4.1
ubuntu
6 месяцев назад

The gix-transport crate before 0.36.1 for Rust allows command execution via the "gix clone 'ssh://-oProxyCommand=open$IFS" substring. NOTE: this was discovered before CVE-2024-32884, a similar vulnerability (involving a username field) that is more difficult to exploit.

CVSS3: 4.1
redhat
6 месяцев назад

The gix-transport crate before 0.36.1 for Rust allows command execution via the "gix clone 'ssh://-oProxyCommand=open$IFS" substring. NOTE: this was discovered before CVE-2024-32884, a similar vulnerability (involving a username field) that is more difficult to exploit.

CVSS3: 4.1
nvd
6 месяцев назад

The gix-transport crate before 0.36.1 for Rust allows command execution via the "gix clone 'ssh://-oProxyCommand=open$IFS" substring. NOTE: this was discovered before CVE-2024-32884, a similar vulnerability (involving a username field) that is more difficult to exploit.

CVSS3: 4.1
msrc
5 месяцев назад

The gix-transport crate before 0.36.1 for Rust allows command execution via the "gix clone 'ssh://-oProxyCommand=open$IFS" substring. NOTE: this was discovered before CVE-2024-32884, a similar vulnerability (involving a username field) that is more difficult to exploit.

CVSS3: 4.1
debian
6 месяцев назад

The gix-transport crate before 0.36.1 for Rust allows command executio ...

EPSS

Процентиль: 2%
0.00014
Низкий

4.1 Medium

CVSS3

Дефекты

CWE-78
CWE-88