Описание
HashiCorp’s go-getter library can be coerced into executing Git update on an existing maliciously modified Git Configuration, potentially leading to arbitrary code execution.
Релиз | Статус | Примечание |
---|---|---|
devel | needed | |
esm-apps/bionic | needed | |
esm-apps/focal | needed | |
esm-apps/jammy | needed | |
esm-apps/noble | needed | |
focal | ignored | end of standard support, was needed |
jammy | needed | |
mantic | ignored | end of life, was needs-triage |
noble | needed | |
oracular | needed |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-apps/focal | needed | |
esm-apps/jammy | needed | |
esm-apps/noble | needed | |
focal | ignored | end of standard support, was needed |
jammy | needed | |
mantic | ignored | end of life, was needs-triage |
noble | needed | |
oracular | needed | |
plucky | DNE |
Показывать по
EPSS
8.4 High
CVSS3
Связанные уязвимости
HashiCorp’s go-getter library can be coerced into executing Git update on an existing maliciously modified Git Configuration, potentially leading to arbitrary code execution.
HashiCorp’s go-getter library can be coerced into executing Git update on an existing maliciously modified Git Configuration, potentially leading to arbitrary code execution.
HashiCorp\u2019s go-getter library can be coerced into executing Git u ...
EPSS
8.4 High
CVSS3