Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2025-22620

больше 1 года назад

gitoxide is an implementation of git written in Rust. Prior to 0.17.0, gix-worktree-state specifies 0777 permissions when checking out executable files, intending that the umask will restrict them appropriately. But one of the strategies it uses to set permissions is not subject to the umask. This causes files in a repository to be world-writable in some situations. This vulnerability is fixed in 0.17.0.

CVSS3: 5
EPSS: Низкий
nvd логотип

CVE-2025-22620

больше 1 года назад

gitoxide is an implementation of git written in Rust. Prior to 0.17.0, gix-worktree-state specifies 0777 permissions when checking out executable files, intending that the umask will restrict them appropriately. But one of the strategies it uses to set permissions is not subject to the umask. This causes files in a repository to be world-writable in some situations. This vulnerability is fixed in 0.17.0.

CVSS3: 5
EPSS: Низкий
debian логотип

CVE-2025-22620

больше 1 года назад

gitoxide is an implementation of git written in Rust. Prior to 0.17.0, ...

CVSS3: 5
EPSS: Низкий
github логотип

GHSA-fqmf-w4xh-33rh

больше 1 года назад

gix-worktree-state nonexclusive checkout sets executable files world-writable

CVSS3: 5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21558-1

около 1 месяца назад

Security update for gitoxide

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-22620

gitoxide is an implementation of git written in Rust. Prior to 0.17.0, gix-worktree-state specifies 0777 permissions when checking out executable files, intending that the umask will restrict them appropriately. But one of the strategies it uses to set permissions is not subject to the umask. This causes files in a repository to be world-writable in some situations. This vulnerability is fixed in 0.17.0.

CVSS3: 5
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2025-22620

gitoxide is an implementation of git written in Rust. Prior to 0.17.0, gix-worktree-state specifies 0777 permissions when checking out executable files, intending that the umask will restrict them appropriately. But one of the strategies it uses to set permissions is not subject to the umask. This causes files in a repository to be world-writable in some situations. This vulnerability is fixed in 0.17.0.

CVSS3: 5
0%
Низкий
больше 1 года назад
debian логотип
CVE-2025-22620

gitoxide is an implementation of git written in Rust. Prior to 0.17.0, ...

CVSS3: 5
0%
Низкий
больше 1 года назад
github логотип
GHSA-fqmf-w4xh-33rh

gix-worktree-state nonexclusive checkout sets executable files world-writable

CVSS3: 5
0%
Низкий
больше 1 года назад
suse-cvrf логотип
openSUSE-SU-2026:21558-1

Security update for gitoxide

около 1 месяца назад

Уязвимостей на страницу