Логотип exploitDog
bind: "CVE-2024-32021"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2024-32021"

Количество 15

Количество 15

ubuntu логотип

CVE-2024-32021

около 1 года назад

Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, when cloning a local source repository that contains symlinks via the filesystem, Git may create hardlinks to arbitrary user-readable files on the same filesystem as the target repository in the `objects/` directory. Cloning a local repository over the filesystem may creating hardlinks to arbitrary user-owned files on the same filesystem in the target Git repository's `objects/` directory. When cloning a repository over the filesystem (without explicitly specifying the `file://` protocol or `--no-local`), the optimizations for local cloning will be used, which include attempting to hard link the object files instead of copying them. While the code includes checks against symbolic links in the source repository, which were added during the fix for CVE-2022-39253, these checks can still be raced because the hard link operation ultimately follows symlinks. If the object on th...

CVSS3: 3.9
EPSS: Низкий
redhat логотип

CVE-2024-32021

около 1 года назад

Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, when cloning a local source repository that contains symlinks via the filesystem, Git may create hardlinks to arbitrary user-readable files on the same filesystem as the target repository in the `objects/` directory. Cloning a local repository over the filesystem may creating hardlinks to arbitrary user-owned files on the same filesystem in the target Git repository's `objects/` directory. When cloning a repository over the filesystem (without explicitly specifying the `file://` protocol or `--no-local`), the optimizations for local cloning will be used, which include attempting to hard link the object files instead of copying them. While the code includes checks against symbolic links in the source repository, which were added during the fix for CVE-2022-39253, these checks can still be raced because the hard link operation ultimately follows symlinks. If the object on th...

CVSS3: 3.9
EPSS: Низкий
nvd логотип

CVE-2024-32021

около 1 года назад

Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, when cloning a local source repository that contains symlinks via the filesystem, Git may create hardlinks to arbitrary user-readable files on the same filesystem as the target repository in the `objects/` directory. Cloning a local repository over the filesystem may creating hardlinks to arbitrary user-owned files on the same filesystem in the target Git repository's `objects/` directory. When cloning a repository over the filesystem (without explicitly specifying the `file://` protocol or `--no-local`), the optimizations for local cloning will be used, which include attempting to hard link the object files instead of copying them. While the code includes checks against symbolic links in the source repository, which were added during the fix for CVE-2022-39253, these checks can still be raced because the hard link operation ultimately follows symlinks. If the object on the f

CVSS3: 3.9
EPSS: Низкий
msrc логотип

CVE-2024-32021

9 месяцев назад

CVSS3: 3.9
EPSS: Низкий
debian логотип

CVE-2024-32021

около 1 года назад

Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2. ...

CVSS3: 3.9
EPSS: Низкий
fstec логотип

BDU:2024-04094

около 1 года назад

Уязвимость распределенной системы контроля версий Git, связанная с использованием предустановленных данных, связанных с безопасностью, позволяющая нарушителю создавать жесткие ссылки на произвольные файлы, доступные для чтения, в той же файловой системе

CVSS3: 3.9
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2277-1

12 месяцев назад

Security update for git

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1854-1

около 1 года назад

Security update for git

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1807-1

около 1 года назад

Security update for git

EPSS: Низкий
rocky логотип

RLSA-2024:4084

12 месяцев назад

Important: git security update

EPSS: Низкий
rocky логотип

RLSA-2024:4083

12 месяцев назад

Important: git security update

EPSS: Низкий
oracle-oval логотип

ELSA-2024-4084

12 месяцев назад

ELSA-2024-4084: git security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-4083

12 месяцев назад

ELSA-2024-4083: git security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0197-1

5 месяцев назад

Security update for git

EPSS: Низкий
redos логотип

ROS-20240527-04

около 1 года назад

Множественные уязвимости git

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-32021

Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, when cloning a local source repository that contains symlinks via the filesystem, Git may create hardlinks to arbitrary user-readable files on the same filesystem as the target repository in the `objects/` directory. Cloning a local repository over the filesystem may creating hardlinks to arbitrary user-owned files on the same filesystem in the target Git repository's `objects/` directory. When cloning a repository over the filesystem (without explicitly specifying the `file://` protocol or `--no-local`), the optimizations for local cloning will be used, which include attempting to hard link the object files instead of copying them. While the code includes checks against symbolic links in the source repository, which were added during the fix for CVE-2022-39253, these checks can still be raced because the hard link operation ultimately follows symlinks. If the object on th...

CVSS3: 3.9
0%
Низкий
около 1 года назад
redhat логотип
CVE-2024-32021

Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, when cloning a local source repository that contains symlinks via the filesystem, Git may create hardlinks to arbitrary user-readable files on the same filesystem as the target repository in the `objects/` directory. Cloning a local repository over the filesystem may creating hardlinks to arbitrary user-owned files on the same filesystem in the target Git repository's `objects/` directory. When cloning a repository over the filesystem (without explicitly specifying the `file://` protocol or `--no-local`), the optimizations for local cloning will be used, which include attempting to hard link the object files instead of copying them. While the code includes checks against symbolic links in the source repository, which were added during the fix for CVE-2022-39253, these checks can still be raced because the hard link operation ultimately follows symlinks. If the object on th...

CVSS3: 3.9
0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-32021

Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, when cloning a local source repository that contains symlinks via the filesystem, Git may create hardlinks to arbitrary user-readable files on the same filesystem as the target repository in the `objects/` directory. Cloning a local repository over the filesystem may creating hardlinks to arbitrary user-owned files on the same filesystem in the target Git repository's `objects/` directory. When cloning a repository over the filesystem (without explicitly specifying the `file://` protocol or `--no-local`), the optimizations for local cloning will be used, which include attempting to hard link the object files instead of copying them. While the code includes checks against symbolic links in the source repository, which were added during the fix for CVE-2022-39253, these checks can still be raced because the hard link operation ultimately follows symlinks. If the object on the f

CVSS3: 3.9
0%
Низкий
около 1 года назад
msrc логотип
CVSS3: 3.9
0%
Низкий
9 месяцев назад
debian логотип
CVE-2024-32021

Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2. ...

CVSS3: 3.9
0%
Низкий
около 1 года назад
fstec логотип
BDU:2024-04094

Уязвимость распределенной системы контроля версий Git, связанная с использованием предустановленных данных, связанных с безопасностью, позволяющая нарушителю создавать жесткие ссылки на произвольные файлы, доступные для чтения, в той же файловой системе

CVSS3: 3.9
0%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:2277-1

Security update for git

12 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:1854-1

Security update for git

около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:1807-1

Security update for git

около 1 года назад
rocky логотип
RLSA-2024:4084

Important: git security update

12 месяцев назад
rocky логотип
RLSA-2024:4083

Important: git security update

12 месяцев назад
oracle-oval логотип
ELSA-2024-4084

ELSA-2024-4084: git security update (IMPORTANT)

12 месяцев назад
oracle-oval логотип
ELSA-2024-4083

ELSA-2024-4083: git security update (IMPORTANT)

12 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:0197-1

Security update for git

5 месяцев назад
redos логотип
ROS-20240527-04

Множественные уязвимости git

CVSS3: 8.1
около 1 года назад

Уязвимостей на страницу