USN-6050-2
Dashboard / Vulnerabilities / USN-6050-2
USN-6050-2
Summary: git vulnerabilities
Details: USN-6050-1 fixed several vulnerabilities in Git. This update provides the corresponding updates for CVE-2023-25652 and CVE-2023-29007 on Ubuntu 16.04 LTS. Original advisory details: It was discovered that Git incorrectly handled certain commands. An attacker could possibly use this issue to overwrite paths. (CVE-2023-25652) André Baptista and Vítor Pinho discovered that Git incorrectly handled certain configurations. An attacker could possibly use this issue to achieve arbitrary configuration injection. (CVE-2023-29007)
References: https://ubuntu.com/security/notices/USN-6050-2, https://ubuntu.com/security/CVE-2023-25652, https://ubuntu.com/security/CVE-2023-29007
Affected packages
Package
Name: git
Purl: pkg:deb/ubuntu/git?arch=source&distro=esm-infra%2Fxenial
Affected ranges
Type: ECOSYSTEM
Events:
