Описание
GitPython before 3.1.50 fails to validate newline characters in the section parameter of config_writer(), allowing attackers to inject arbitrary section headers into .git/config. Attackers can inject newlines to create a forged [core] section with hooksPath pointing to attacker-controlled directories, achieving remote code execution when git hooks are triggered.
A flaw was found in GitPython. This vulnerability allows attackers to inject newline characters into the section parameter of the config_writer() function, leading to the injection of arbitrary section headers into the .git/config file. By forging a [core] section with a malicious hooksPath, an attacker can achieve remote code execution when Git hooks are subsequently triggered.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Hardened Images | rust | Not affected | ||
| Red Hat Hardened Images | llvm-main-22.1.8-4.1.hum1 | Fixed | RHSA-2026:44416 | 23.07.2026 |
| Red Hat Hardened Images | swift-lang-main-6.3.3-0.1.1.hum1 | Fixed | RHSA-2026:45785 | 25.07.2026 |
| Red Hat Hardened Images | llvm21-main-21.1.8-8.hum1 | Fixed | RHSA-2026:45940 | 26.07.2026 |
Показывать по
Дополнительная информация
Статус:
7 High
CVSS3
Связанные уязвимости
GitPython before 3.1.50 fails to validate newline characters in the section parameter of config_writer(), allowing attackers to inject arbitrary section headers into .git/config. Attackers can inject newlines to create a forged [core] section with hooksPath pointing to attacker-controlled directories, achieving remote code execution when git hooks are triggered.
GitPython before 3.1.50 fails to validate newline characters in the section parameter of config_writer(), allowing attackers to inject arbitrary section headers into .git/config. Attackers can inject newlines to create a forged [core] section with hooksPath pointing to attacker-controlled directories, achieving remote code execution when git hooks are triggered.
GitPython before 3.1.50 fails to validate newline characters in the se ...
GitPython before 3.1.50 fails to validate newline characters in the section parameter of config_writer(), allowing attackers to inject arbitrary section headers into .git/config. Attackers can inject newlines to create a forged [core] section with hooksPath pointing to attacker-controlled directories, achieving remote code execution when git hooks are triggered.
7 High
CVSS3