Логотип exploitDog
bind:CVE-2025-22620
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-22620

Количество 4

Количество 4

ubuntu логотип

CVE-2025-22620

около 1 года назад

gitoxide is an implementation of git written in Rust. Prior to 0.17.0, gix-worktree-state specifies 0777 permissions when checking out executable files, intending that the umask will restrict them appropriately. But one of the strategies it uses to set permissions is not subject to the umask. This causes files in a repository to be world-writable in some situations. This vulnerability is fixed in 0.17.0.

CVSS3: 5
EPSS: Низкий
nvd логотип

CVE-2025-22620

около 1 года назад

gitoxide is an implementation of git written in Rust. Prior to 0.17.0, gix-worktree-state specifies 0777 permissions when checking out executable files, intending that the umask will restrict them appropriately. But one of the strategies it uses to set permissions is not subject to the umask. This causes files in a repository to be world-writable in some situations. This vulnerability is fixed in 0.17.0.

CVSS3: 5
EPSS: Низкий
debian логотип

CVE-2025-22620

около 1 года назад

gitoxide is an implementation of git written in Rust. Prior to 0.17.0, ...

CVSS3: 5
EPSS: Низкий
github логотип

GHSA-fqmf-w4xh-33rh

около 1 года назад

gix-worktree-state nonexclusive checkout sets executable files world-writable

CVSS3: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-22620

gitoxide is an implementation of git written in Rust. Prior to 0.17.0, gix-worktree-state specifies 0777 permissions when checking out executable files, intending that the umask will restrict them appropriately. But one of the strategies it uses to set permissions is not subject to the umask. This causes files in a repository to be world-writable in some situations. This vulnerability is fixed in 0.17.0.

CVSS3: 5
0%
Низкий
около 1 года назад
nvd логотип
CVE-2025-22620

gitoxide is an implementation of git written in Rust. Prior to 0.17.0, gix-worktree-state specifies 0777 permissions when checking out executable files, intending that the umask will restrict them appropriately. But one of the strategies it uses to set permissions is not subject to the umask. This causes files in a repository to be world-writable in some situations. This vulnerability is fixed in 0.17.0.

CVSS3: 5
0%
Низкий
около 1 года назад
debian логотип
CVE-2025-22620

gitoxide is an implementation of git written in Rust. Prior to 0.17.0, ...

CVSS3: 5
0%
Низкий
около 1 года назад
github логотип
GHSA-fqmf-w4xh-33rh

gix-worktree-state nonexclusive checkout sets executable files world-writable

CVSS3: 5
0%
Низкий
около 1 года назад

Уязвимостей на страницу