SUSE-SU-2017:1357-1
Dashboard / Vulnerabilities / SUSE-SU-2017:1357-1
SUSE-SU-2017:1357-1
Summary: Security update for git
Details: This update for git fixes the following issues: - git 2.12.3: * CVE-2017-8386: Fix git-shell not to escape with the starting dash name (bsc#1038395) * Fix for potential segv introduced in v2.11.0 and later * Misc fixes and cleanups. - git 2.12.2: * CLI output fixes * 'Dump http' transport fixes * various fixes for internal code paths * Trailer 'Cc:' RFC fix - git 2.12.1: * Reduce authentication round-trip over HTTP when the server supports just a single authentication method. * 'git add -i' patch subcommand fixed to have a path selection * various path verification fixes * fix 'git log -L...' buffer overrun
References: https://www.suse.com/support/update/announcement/2017/suse-su-20171357-1/, https://bugzilla.suse.com/1038395, https://www.suse.com/security/cve/CVE-2017-8386
Affected packages
Package
Name: git
Purl: pkg:rpm/suse/git&distro=SUSE%20Linux%20Enterprise%20Server%20for%20Raspberry%20Pi%2012%20SP2
Affected ranges
Type: ECOSYSTEM
Events:
