MGASA-2015-0396
Dashboard / Vulnerabilities / MGASA-2015-0396
MGASA-2015-0396
Summary: Updated git packages fix security vulnerability
Details: The git package has been updated to version 2.3.10, fixing a few security issues. These include buffer and integer overflow issues with long file path names and large files, as well as a remote code execution flaw with some protocols like git-remote-ext and specially crafted URLs. See the upstream release notes for details.
References: https://advisories.mageia.org/MGASA-2015-0396.html, https://bugs.mageia.org/show_bug.cgi?id=16913, https://raw.githubusercontent.com/git/git/master/Documentation/RelNotes/2.3.9.txt, https://raw.githubusercontent.com/git/git/master/Documentation/RelNotes/2.3.10.txt
Affected packages
Package
Name: git
Purl: pkg:rpm/mageia/git?arch=source&distro=mageia-5
Affected ranges
Type: ECOSYSTEM
Events:
