Lucene search

K
alpinelinuxAlpine Linux Development TeamALPINE:CVE-2023-40267
HistoryAug 11, 2023 - 7:15 a.m.

CVE-2023-40267

2023-08-1107:15:09
Alpine Linux Development Team
security.alpinelinux.org
9
gitpython
before 3.1.32
insecure
clone
option
cve-2023-40267
incomplete fix
unix

0.011 Low

EPSS

Percentile

84.1%

GitPython before 3.1.32 does not block insecure non-multi options in clone and clone_from. NOTE: this issue exists because of an incomplete fix for CVE-2022-24439.

OSVersionArchitecturePackageVersionFilename
Alpine3.18-communitynoarchpy3-gitpython= 3.1.31-r1UNKNOWN