Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2015:0836-1

Опубликовано: 20 мар. 2015
Источник: suse-cvrf

Описание

Security update for mercurial

Mercurial was updated to fix a command injection via sshpeer._validaterepo() (CVE-2014-9462, bnc#923070):

Список пакетов

SUSE Linux Enterprise Software Development Kit 12
mercurial-2.8.2-3.1

Описание

The _validaterepo function in sshpeer in Mercurial before 3.2.4 allows remote attackers to execute arbitrary commands via a crafted repository name in a clone command.


Затронутые продукты
SUSE Linux Enterprise Software Development Kit 12:mercurial-2.8.2-3.1

Ссылки