Lucene search

K
ubuntuUbuntuUSN-5810-2
HistoryJan 19, 2023 - 12:00 a.m.

Git regression

2023-01-1900:00:00
ubuntu.com
45
git
regression
ubuntu 20.04 lts
ubuntu 18.04 esm
vulnerabilities
update
cve-2022-23521
cve-2022-41903

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

10 High

AI Score

Confidence

High

0.013 Low

EPSS

Percentile

85.6%

Releases

  • Ubuntu 20.04 LTS
  • Ubuntu 18.04 ESM

Packages

  • git - fast, scalable, distributed revision control system

Details

USN-5810-1 fixed vulnerabilities in Git. This update introduced a regression as it
was missing some commit lines. This update fixes the problem.

Original advisory details:

Markus Vervier and Eric Sesterhenn discovered that Git incorrectly handled certain
gitattributes. An attacker could possibly use this issue to cause a crash
or execute arbitrary code. (CVE-2022-23521)

Joern Schneeweisz discovered that Git incorrectly handled certain commands.
An attacker could possibly use this issue to cause a crash or execute
arbitrary code. (CVE-2022-41903)

OSVersionArchitecturePackageVersionFilename
Ubuntu20.04noarchgit< 1:2.25.1-1ubuntu3.8UNKNOWN
Ubuntu20.04noarchgit-all< 1:2.25.1-1ubuntu3.8UNKNOWN
Ubuntu20.04noarchgit-cvs< 1:2.25.1-1ubuntu3.8UNKNOWN
Ubuntu20.04noarchgit-daemon-run< 1:2.25.1-1ubuntu3.8UNKNOWN
Ubuntu20.04noarchgit-daemon-sysvinit< 1:2.25.1-1ubuntu3.8UNKNOWN
Ubuntu20.04noarchgit-dbgsym< 1:2.25.1-1ubuntu3.8UNKNOWN
Ubuntu20.04noarchgit-doc< 1:2.25.1-1ubuntu3.8UNKNOWN
Ubuntu20.04noarchgit-el< 1:2.25.1-1ubuntu3.8UNKNOWN
Ubuntu20.04noarchgit-email< 1:2.25.1-1ubuntu3.8UNKNOWN
Ubuntu20.04noarchgit-gui< 1:2.25.1-1ubuntu3.8UNKNOWN
Rows per page:
1-10 of 301

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

10 High

AI Score

Confidence

High

0.013 Low

EPSS

Percentile

85.6%