Описание
Integer overflow in Git before 2.7.4 allows remote attackers to execute arbitrary code via a (1) long filename or (2) many nested trees, which triggers a heap-based buffer overflow.
Релиз | Статус | Примечание |
---|---|---|
devel | released | 2.7.4-0ubuntu1 |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [1:1.9.1-1ubuntu0.3]] |
precise | released | 1:1.7.9.5-1ubuntu0.3 |
trusty | released | 1:1.9.1-1ubuntu0.3 |
trusty/esm | DNE | trusty was released [1:1.9.1-1ubuntu0.3] |
upstream | needed | |
vivid/stable-phone-overlay | DNE | |
vivid/ubuntu-core | DNE | |
wily | released | 1:2.5.0-1ubuntu0.2 |
Показывать по
EPSS
10 Critical
CVSS2
9.8 Critical
CVSS3
Связанные уязвимости
Integer overflow in Git before 2.7.4 allows remote attackers to execute arbitrary code via a (1) long filename or (2) many nested trees, which triggers a heap-based buffer overflow.
Integer overflow in Git before 2.7.4 allows remote attackers to execute arbitrary code via a (1) long filename or (2) many nested trees, which triggers a heap-based buffer overflow.
Integer overflow in Git before 2.7.4 allows remote attackers to execut ...
Integer overflow in Git before 2.7.4 allows remote attackers to execute arbitrary code via a (1) long filename or (2) many nested trees, which triggers a heap-based buffer overflow.
Уязвимость распределенной системы управления версиями Git, позволяющая нарушителю выполнить произвольный код
EPSS
10 Critical
CVSS2
9.8 Critical
CVSS3