Lucene search

K
ubuntuUbuntuUSN-5810-3
HistoryFeb 07, 2023 - 12:00 a.m.

Git vulnerabilities

2023-02-0700:00:00
ubuntu.com
34
ubuntu 16.04 esm
git
vulnerabilities
gitattributes
arbitrary code

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

10 High

AI Score

Confidence

High

0.013 Low

EPSS

Percentile

85.8%

Releases

  • Ubuntu 16.04 ESM

Packages

  • git - fast, scalable, distributed revision control system

Details

USN-5810-1 fixed several vulnerabilities in Git. This update provides
the corresponding update for Ubuntu 16.04 ESM.

Original advisory details:

Markus Vervier and Eric Sesterhenn discovered that Git incorrectly handled certain
gitattributes. An attacker could possibly use this issue to cause a crash
or execute arbitrary code. (CVE-2022-23521)

Joern Schneeweisz discovered that Git incorrectly handled certain commands.
An attacker could possibly use this issue to cause a crash or execute
arbitrary code. (CVE-2022-41903)

OSVersionArchitecturePackageVersionFilename
Ubuntu16.04noarchgit< 1:2.7.4-0ubuntu1.10+esm4UNKNOWN
Ubuntu16.04noarchgit< 1:2.7.4-0ubuntu1.10UNKNOWN
Ubuntu16.04noarchgit-all< 1:2.7.4-0ubuntu1.10UNKNOWN
Ubuntu16.04noarchgit-arch< 1:2.7.4-0ubuntu1.10UNKNOWN
Ubuntu16.04noarchgit-core< 1:2.7.4-0ubuntu1.10UNKNOWN
Ubuntu16.04noarchgit-cvs< 1:2.7.4-0ubuntu1.10UNKNOWN
Ubuntu16.04noarchgit-daemon-run< 1:2.7.4-0ubuntu1.10UNKNOWN
Ubuntu16.04noarchgit-daemon-sysvinit< 1:2.7.4-0ubuntu1.10UNKNOWN
Ubuntu16.04noarchgit-doc< 1:2.7.4-0ubuntu1.10UNKNOWN
Ubuntu16.04noarchgit-el< 1:2.7.4-0ubuntu1.10UNKNOWN
Rows per page:
1-10 of 171

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

10 High

AI Score

Confidence

High

0.013 Low

EPSS

Percentile

85.8%