Логотип exploitDog
bind:CVE-2024-32021
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-32021

Количество 15

Количество 15

ubuntu логотип

CVE-2024-32021

больше 1 года назад

Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, when cloning a local source repository that contains symlinks via the filesystem, Git may create hardlinks to arbitrary user-readable files on the same filesystem as the target repository in the `objects/` directory. Cloning a local repository over the filesystem may creating hardlinks to arbitrary user-owned files on the same filesystem in the target Git repository's `objects/` directory. When cloning a repository over the filesystem (without explicitly specifying the `file://` protocol or `--no-local`), the optimizations for local cloning will be used, which include attempting to hard link the object files instead of copying them. While the code includes checks against symbolic links in the source repository, which were added during the fix for CVE-2022-39253, these checks can still be raced because the hard link operation ultimately follows symlinks. If the object on th...

CVSS3: 3.9
EPSS: Низкий
redhat логотип

CVE-2024-32021

больше 1 года назад

Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, when cloning a local source repository that contains symlinks via the filesystem, Git may create hardlinks to arbitrary user-readable files on the same filesystem as the target repository in the `objects/` directory. Cloning a local repository over the filesystem may creating hardlinks to arbitrary user-owned files on the same filesystem in the target Git repository's `objects/` directory. When cloning a repository over the filesystem (without explicitly specifying the `file://` protocol or `--no-local`), the optimizations for local cloning will be used, which include attempting to hard link the object files instead of copying them. While the code includes checks against symbolic links in the source repository, which were added during the fix for CVE-2022-39253, these checks can still be raced because the hard link operation ultimately follows symlinks. If the object on th...

CVSS3: 3.9
EPSS: Низкий
nvd логотип

CVE-2024-32021

больше 1 года назад

Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, when cloning a local source repository that contains symlinks via the filesystem, Git may create hardlinks to arbitrary user-readable files on the same filesystem as the target repository in the `objects/` directory. Cloning a local repository over the filesystem may creating hardlinks to arbitrary user-owned files on the same filesystem in the target Git repository's `objects/` directory. When cloning a repository over the filesystem (without explicitly specifying the `file://` protocol or `--no-local`), the optimizations for local cloning will be used, which include attempting to hard link the object files instead of copying them. While the code includes checks against symbolic links in the source repository, which were added during the fix for CVE-2022-39253, these checks can still be raced because the hard link operation ultimately follows symlinks. If the object on the f

CVSS3: 3.9
EPSS: Низкий
msrc логотип

CVE-2024-32021

11 месяцев назад

CVSS3: 3.9
EPSS: Низкий
debian логотип

CVE-2024-32021

больше 1 года назад

Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2. ...

CVSS3: 3.9
EPSS: Низкий
fstec логотип

BDU:2024-04094

больше 1 года назад

Уязвимость распределенной системы контроля версий Git, связанная с использованием предустановленных данных, связанных с безопасностью, позволяющая нарушителю создавать жесткие ссылки на произвольные файлы, доступные для чтения, в той же файловой системе

CVSS3: 3.9
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2277-1

около 1 года назад

Security update for git

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1854-1

около 1 года назад

Security update for git

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1807-1

около 1 года назад

Security update for git

EPSS: Низкий
rocky логотип

RLSA-2024:4084

около 1 года назад

Important: git security update

EPSS: Низкий
rocky логотип

RLSA-2024:4083

около 1 года назад

Important: git security update

EPSS: Низкий
oracle-oval логотип

ELSA-2024-4084

около 1 года назад

ELSA-2024-4084: git security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-4083

около 1 года назад

ELSA-2024-4083: git security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0197-1

7 месяцев назад

Security update for git

EPSS: Низкий
redos логотип

ROS-20240527-04

около 1 года назад

Множественные уязвимости git

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-32021

Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, when cloning a local source repository that contains symlinks via the filesystem, Git may create hardlinks to arbitrary user-readable files on the same filesystem as the target repository in the `objects/` directory. Cloning a local repository over the filesystem may creating hardlinks to arbitrary user-owned files on the same filesystem in the target Git repository's `objects/` directory. When cloning a repository over the filesystem (without explicitly specifying the `file://` protocol or `--no-local`), the optimizations for local cloning will be used, which include attempting to hard link the object files instead of copying them. While the code includes checks against symbolic links in the source repository, which were added during the fix for CVE-2022-39253, these checks can still be raced because the hard link operation ultimately follows symlinks. If the object on th...

CVSS3: 3.9
0%
Низкий
больше 1 года назад
redhat логотип
CVE-2024-32021

Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, when cloning a local source repository that contains symlinks via the filesystem, Git may create hardlinks to arbitrary user-readable files on the same filesystem as the target repository in the `objects/` directory. Cloning a local repository over the filesystem may creating hardlinks to arbitrary user-owned files on the same filesystem in the target Git repository's `objects/` directory. When cloning a repository over the filesystem (without explicitly specifying the `file://` protocol or `--no-local`), the optimizations for local cloning will be used, which include attempting to hard link the object files instead of copying them. While the code includes checks against symbolic links in the source repository, which were added during the fix for CVE-2022-39253, these checks can still be raced because the hard link operation ultimately follows symlinks. If the object on th...

CVSS3: 3.9
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-32021

Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, when cloning a local source repository that contains symlinks via the filesystem, Git may create hardlinks to arbitrary user-readable files on the same filesystem as the target repository in the `objects/` directory. Cloning a local repository over the filesystem may creating hardlinks to arbitrary user-owned files on the same filesystem in the target Git repository's `objects/` directory. When cloning a repository over the filesystem (without explicitly specifying the `file://` protocol or `--no-local`), the optimizations for local cloning will be used, which include attempting to hard link the object files instead of copying them. While the code includes checks against symbolic links in the source repository, which were added during the fix for CVE-2022-39253, these checks can still be raced because the hard link operation ultimately follows symlinks. If the object on the f

CVSS3: 3.9
0%
Низкий
больше 1 года назад
msrc логотип
CVSS3: 3.9
0%
Низкий
11 месяцев назад
debian логотип
CVE-2024-32021

Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2. ...

CVSS3: 3.9
0%
Низкий
больше 1 года назад
fstec логотип
BDU:2024-04094

Уязвимость распределенной системы контроля версий Git, связанная с использованием предустановленных данных, связанных с безопасностью, позволяющая нарушителю создавать жесткие ссылки на произвольные файлы, доступные для чтения, в той же файловой системе

CVSS3: 3.9
0%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:2277-1

Security update for git

около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:1854-1

Security update for git

около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:1807-1

Security update for git

около 1 года назад
rocky логотип
RLSA-2024:4084

Important: git security update

около 1 года назад
rocky логотип
RLSA-2024:4083

Important: git security update

около 1 года назад
oracle-oval логотип
ELSA-2024-4084

ELSA-2024-4084: git security update (IMPORTANT)

около 1 года назад
oracle-oval логотип
ELSA-2024-4083

ELSA-2024-4083: git security update (IMPORTANT)

около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0197-1

Security update for git

7 месяцев назад
redos логотип
ROS-20240527-04

Множественные уязвимости git

CVSS3: 8.1
около 1 года назад

Уязвимостей на страницу