Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2016:1442-1

Опубликовано: 30 мая 2016
Источник: suse-cvrf

Описание

Security update for mercurial

This update for mercurial fixes the following issues:

Security issues fixed:

  • CVE-2016-3105: Versionsprior to 3.8 allowed arbitrary code execution when using the convert extension on Git repo. (bsc#978391)

Список пакетов

SUSE Linux Enterprise Software Development Kit 12
mercurial-2.8.2-9.1
SUSE Linux Enterprise Software Development Kit 12 SP1
mercurial-2.8.2-9.1

Описание

The convert extension in Mercurial before 3.8 might allow context-dependent attackers to execute arbitrary code via a crafted git repository name.


Затронутые продукты
SUSE Linux Enterprise Software Development Kit 12 SP1:mercurial-2.8.2-9.1
SUSE Linux Enterprise Software Development Kit 12:mercurial-2.8.2-9.1

Ссылки
Уязвимость SUSE-SU-2016:1442-1