Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-91986

Опубликовано: 15 сент. 2026
Источник: redhat
CVSS3: 5.4
EPSS Низкий

Описание

gitoxide gix-transport before 0.59.2 fails to filter control characters in git-daemon connect requests, allowing attackers to inject NUL/CR/LF bytes via crafted git URLs. Attackers can inject extra NUL-delimited protocol fields to spoof virtual hosts or inject newlines into daemon requests and logs.

A flaw was found in gix-transport. This vulnerability allows a remote attacker to inject control characters, specifically NUL, Carriage Return (CR), and Line Feed (LF) bytes, into git-daemon connect requests by crafting malicious git URLs. This injection can lead to spoofing of virtual hosts or the insertion of newlines into daemon requests and logs, potentially causing information disclosure or unexpected behavior.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10igvmFix deferred
Red Hat Enterprise Linux 10rustFix deferred
Red Hat Enterprise Linux 8rust-toolset:rhel8/rustFix deferred
Red Hat Enterprise Linux 9rustFix deferred
Red Hat Enterprise Linux AI (RHEL AI) 3rustFix deferred
Red Hat Hardened ImagesopenshellNot affected
Red Hat Hardened ImagesrustNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-93
https://bugzilla.redhat.com/show_bug.cgi?id=2533967gix-transport: gix-transport: Information disclosure and virtual host spoofing via control character injection

EPSS

Процентиль: 11%
0.00203
Низкий

5.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.4
ubuntu
4 дня назад

(gitoxide gix-transport before 0.59.2 fails to filter control character ...)

CVSS3: 5.4
nvd
4 дня назад

gitoxide gix-transport before 0.59.2 fails to filter control characters in git-daemon connect requests, allowing attackers to inject NUL/CR/LF bytes via crafted git URLs. Attackers can inject extra NUL-delimited protocol fields to spoof virtual hosts or inject newlines into daemon requests and logs.

msrc
около 18 часов назад

gitoxide gix-transport before 0.59.2 CR/LF/NUL Injection

CVSS3: 5.4
debian
4 дня назад

gitoxide gix-transport before 0.59.2 fails to filter control character ...

CVSS3: 5.4
github
4 дня назад

gitoxide gix-transport before 0.59.2 fails to filter control characters in git-daemon connect requests, allowing attackers to inject NUL/CR/LF bytes via crafted git URLs. Attackers can inject extra NUL-delimited protocol fields to spoof virtual hosts or inject newlines into daemon requests and logs.

EPSS

Процентиль: 11%
0.00203
Низкий

5.4 Medium

CVSS3