Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-3630

Опубликовано: 29 мар. 2016
Источник: redhat
CVSS2: 6.8

Описание

The binary delta decoder in Mercurial before 3.7.3 allows remote attackers to execute arbitrary code via a (1) clone, (2) push, or (3) pull command, related to (a) a list sizing rounding error and (b) short records.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6mercurialNot affected
Red Hat Enterprise Linux 7mercurialNot affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-119
https://bugzilla.redhat.com/show_bug.cgi?id=1322264mercurial: remote code execution in binary delta decoding

6.8 Medium

CVSS2

Связанные уязвимости

CVSS3: 8.8
ubuntu
почти 10 лет назад

The binary delta decoder in Mercurial before 3.7.3 allows remote attackers to execute arbitrary code via a (1) clone, (2) push, or (3) pull command, related to (a) a list sizing rounding error and (b) short records.

CVSS3: 8.8
nvd
почти 10 лет назад

The binary delta decoder in Mercurial before 3.7.3 allows remote attackers to execute arbitrary code via a (1) clone, (2) push, or (3) pull command, related to (a) a list sizing rounding error and (b) short records.

CVSS3: 8.8
debian
почти 10 лет назад

The binary delta decoder in Mercurial before 3.7.3 allows remote attac ...

CVSS3: 8.8
github
больше 3 лет назад

Mercurial arbitrary code execution vulnerability

suse-cvrf
почти 10 лет назад

Security update for mercurial

6.8 Medium

CVSS2