Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2023-53158

Опубликовано: 28 июл. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 4.1

Описание

The gix-transport crate before 0.36.1 for Rust allows command execution via the "gix clone 'ssh://-oProxyCommand=open$IFS" substring. NOTE: this was discovered before CVE-2024-32884, a similar vulnerability (involving a username field) that is more difficult to exploit.

РелизСтатусПримечание
devel

needs-triage

esm-apps/noble

needs-triage

esm-apps/resolute

needs-triage

jammy

DNE

noble

needs-triage

plucky

ignored

end of life, was needs-triage
questing

ignored

end of life, was needs-triage
resolute

needs-triage

upstream

needs-triage

Показывать по

EPSS

Процентиль: 7%
0.00171
Низкий

4.1 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.1
redhat
около 1 года назад

The gix-transport crate before 0.36.1 for Rust allows command execution via the "gix clone 'ssh://-oProxyCommand=open$IFS" substring. NOTE: this was discovered before CVE-2024-32884, a similar vulnerability (involving a username field) that is more difficult to exploit.

CVSS3: 4.1
nvd
около 1 года назад

The gix-transport crate before 0.36.1 for Rust allows command execution via the "gix clone 'ssh://-oProxyCommand=open$IFS" substring. NOTE: this was discovered before CVE-2024-32884, a similar vulnerability (involving a username field) that is more difficult to exploit.

CVSS3: 4.1
msrc
12 месяцев назад

The gix-transport crate before 0.36.1 for Rust allows command execution via the "gix clone 'ssh://-oProxyCommand=open$IFS" substring. NOTE: this was discovered before CVE-2024-32884, a similar vulnerability (involving a username field) that is more difficult to exploit.

CVSS3: 4.1
debian
около 1 года назад

The gix-transport crate before 0.36.1 for Rust allows command executio ...

CVSS3: 4.1
github
почти 3 года назад

gix-transport code execution vulnerability

EPSS

Процентиль: 7%
0.00171
Низкий

4.1 Medium

CVSS3