Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-0316

Опубликовано: 03 фев. 2020
Источник: oracle-oval
Платформа: Oracle Linux 6

Описание

ELSA-2020-0316: git security update (IMPORTANT)

[1.7.1-10]

  • fixes arbitrary code execution via .gitmodules Resolves: CVE-2018-17456

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

emacs-git

1.7.1-10.el6_10

emacs-git-el

1.7.1-10.el6_10

git

1.7.1-10.el6_10

git-all

1.7.1-10.el6_10

git-cvs

1.7.1-10.el6_10

git-daemon

1.7.1-10.el6_10

git-email

1.7.1-10.el6_10

git-gui

1.7.1-10.el6_10

git-svn

1.7.1-10.el6_10

gitk

1.7.1-10.el6_10

gitweb

1.7.1-10.el6_10

perl-Git

1.7.1-10.el6_10

Oracle Linux i686

emacs-git

1.7.1-10.el6_10

emacs-git-el

1.7.1-10.el6_10

git

1.7.1-10.el6_10

git-all

1.7.1-10.el6_10

git-cvs

1.7.1-10.el6_10

git-daemon

1.7.1-10.el6_10

git-email

1.7.1-10.el6_10

git-gui

1.7.1-10.el6_10

git-svn

1.7.1-10.el6_10

gitk

1.7.1-10.el6_10

gitweb

1.7.1-10.el6_10

perl-Git

1.7.1-10.el6_10

Связанные CVE

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 7 лет назад

Git before 2.14.5, 2.15.x before 2.15.3, 2.16.x before 2.16.5, 2.17.x before 2.17.2, 2.18.x before 2.18.1, and 2.19.x before 2.19.1 allows remote code execution during processing of a recursive "git clone" of a superproject if a .gitmodules file has a URL field beginning with a '-' character.

CVSS3: 8.8
redhat
около 7 лет назад

Git before 2.14.5, 2.15.x before 2.15.3, 2.16.x before 2.16.5, 2.17.x before 2.17.2, 2.18.x before 2.18.1, and 2.19.x before 2.19.1 allows remote code execution during processing of a recursive "git clone" of a superproject if a .gitmodules file has a URL field beginning with a '-' character.

CVSS3: 9.8
nvd
около 7 лет назад

Git before 2.14.5, 2.15.x before 2.15.3, 2.16.x before 2.16.5, 2.17.x before 2.17.2, 2.18.x before 2.18.1, and 2.19.x before 2.19.1 allows remote code execution during processing of a recursive "git clone" of a superproject if a .gitmodules file has a URL field beginning with a '-' character.

CVSS3: 9.8
debian
около 7 лет назад

Git before 2.14.5, 2.15.x before 2.15.3, 2.16.x before 2.16.5, 2.17.x ...

suse-cvrf
почти 7 лет назад

Security update for libgit2