Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w2rr-v7j3-2w2r

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

revision.c in git before 2.7.4 uses an incorrect integer data type, which allows remote attackers to execute arbitrary code via a (1) long filename or (2) many nested trees, leading to a heap-based buffer overflow.

revision.c in git before 2.7.4 uses an incorrect integer data type, which allows remote attackers to execute arbitrary code via a (1) long filename or (2) many nested trees, leading to a heap-based buffer overflow.

Ссылки

EPSS

Процентиль: 95%
0.17652
Средний

9.8 Critical

CVSS3

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 9.8
ubuntu
почти 10 лет назад

revision.c in git before 2.7.4 uses an incorrect integer data type, which allows remote attackers to execute arbitrary code via a (1) long filename or (2) many nested trees, leading to a heap-based buffer overflow.

redhat
почти 10 лет назад

revision.c in git before 2.7.4 uses an incorrect integer data type, which allows remote attackers to execute arbitrary code via a (1) long filename or (2) many nested trees, leading to a heap-based buffer overflow.

CVSS3: 9.8
nvd
почти 10 лет назад

revision.c in git before 2.7.4 uses an incorrect integer data type, which allows remote attackers to execute arbitrary code via a (1) long filename or (2) many nested trees, leading to a heap-based buffer overflow.

CVSS3: 9.8
debian
почти 10 лет назад

revision.c in git before 2.7.4 uses an incorrect integer data type, wh ...

fstec
почти 10 лет назад

Уязвимость распределенной системы управления версиями Git, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 95%
0.17652
Средний

9.8 Critical

CVSS3

Дефекты

CWE-119