CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
90.4%
New git packages are available for Slackware 14.0, 14.1, 14.2, 15.0,
and -current to fix security issues.
Here are the details from the Slackware 15.0 ChangeLog:
patches/packages/git-2.35.6-i586-1_slack15.0.txz: Upgraded.
This release fixes two security issues:
.gitattributes
.gitattributes
fileWhere to find the new packages:
Thanks to the friendly folks at the OSU Open Source Lab
(http://osuosl.org) for donating FTP and rsync hosting
to the Slackware project! :-)
Also see the “Get Slack” section on http://slackware.com for
additional mirror sites near you.
Updated package for Slackware 14.0:
ftp://ftp.slackware.com/pub/slackware/slackware-14.0/patches/packages/git-2.30.7-i486-1_slack14.0.txz
Updated package for Slackware x86_64 14.0:
ftp://ftp.slackware.com/pub/slackware/slackware64-14.0/patches/packages/git-2.30.7-x86_64-1_slack14.0.txz
Updated package for Slackware 14.1:
ftp://ftp.slackware.com/pub/slackware/slackware-14.1/patches/packages/git-2.30.7-i486-1_slack14.1.txz
Updated package for Slackware x86_64 14.1:
ftp://ftp.slackware.com/pub/slackware/slackware64-14.1/patches/packages/git-2.30.7-x86_64-1_slack14.1.txz
Updated package for Slackware 14.2:
ftp://ftp.slackware.com/pub/slackware/slackware-14.2/patches/packages/git-2.30.7-i586-1_slack14.2.txz
Updated package for Slackware x86_64 14.2:
ftp://ftp.slackware.com/pub/slackware/slackware64-14.2/patches/packages/git-2.30.7-x86_64-1_slack14.2.txz
Updated package for Slackware 15.0:
ftp://ftp.slackware.com/pub/slackware/slackware-15.0/patches/packages/git-2.35.6-i586-1_slack15.0.txz
Updated package for Slackware x86_64 15.0:
ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/patches/packages/git-2.35.6-x86_64-1_slack15.0.txz
Updated package for Slackware -current:
ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/d/git-2.39.1-i586-1.txz
Updated package for Slackware x86_64 -current:
ftp://ftp.slackware.com/pub/slackware/slackware64-current/slackware64/d/git-2.39.1-x86_64-1.txz
MD5 signatures:
Slackware 14.0 package:
bcc7ecde446d93a6b702a50714ce8454 git-2.30.7-i486-1_slack14.0.txz
Slackware x86_64 14.0 package:
78031fa6e500d807ae791d7b89334d5f git-2.30.7-x86_64-1_slack14.0.txz
Slackware 14.1 package:
42f23eccc37d1f08653f211a13d754b7 git-2.30.7-i486-1_slack14.1.txz
Slackware x86_64 14.1 package:
1fde1ddb395538c8ca20ae4c9e4d106a git-2.30.7-x86_64-1_slack14.1.txz
Slackware 14.2 package:
edeebf5c549252366ff25bef9309b46e git-2.30.7-i586-1_slack14.2.txz
Slackware x86_64 14.2 package:
e7f3419bf28d7b06a9223012b218fd71 git-2.30.7-x86_64-1_slack14.2.txz
Slackware 15.0 package:
efa0367e8418a761d88d3bf3d7b757b5 git-2.35.6-i586-1_slack15.0.txz
Slackware x86_64 15.0 package:
40f8a8697f10c572d967531290a5a336 git-2.35.6-x86_64-1_slack15.0.txz
Slackware -current package:
fac030a2fd27f0d87221f3720103feb3 d/git-2.39.1-i586-1.txz
Slackware x86_64 -current package:
8e95c6e5445cbd45644af9dcab99d7e9 d/git-2.39.1-x86_64-1.txz
Installation instructions:
Upgrade the package as root:
> upgradepkg git-2.35.6-i586-1_slack15.0.txz