what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

Debian Security Advisory 3435-1

Debian Security Advisory 3435-1
Posted Jan 5, 2016
Authored by Debian | Site debian.org

Debian Linux Security Advisory 3435-1 - Blake Burkhart discovered that the Git git-remote-ext helper incorrectly handled recursive clones of git repositories. A remote attacker could possibly use this issue to execute arbitrary code by injecting commands via crafted URLs.

tags | advisory, remote, arbitrary
systems | linux, debian
advisories | CVE-2015-7545
SHA-256 | 79e3590b0ad8688b6035120a579889261e6e6c3face4d28a132126be082d0fb3

Debian Security Advisory 3435-1

Change Mirror Download
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- -------------------------------------------------------------------------
Debian Security Advisory DSA-3435-1 security@debian.org
https://www.debian.org/security/ Laszlo Boszormenyi (GCS)
January 05, 2016 https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package : git
CVE ID : CVE-2015-7545

Blake Burkhart discovered that the Git git-remote-ext helper incorrectly
handled recursive clones of git repositories. A remote attacker could
possibly use this issue to execute arbitary code by injecting commands
via crafted URLs.

For the oldstable distribution (wheezy), this problem has been fixed
in version 1:1.7.10.4-1+wheezy2.

For the stable distribution (jessie), this problem has been fixed in
version 1:2.1.4-2.1+deb8u1.

For the testing distribution (stretch), this problem has been fixed
in version 1:2.6.1-1.

For the unstable distribution (sid), this problem has been fixed in
version 1:2.6.1-1.

We recommend that you upgrade your git packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce@lists.debian.org
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=kWP3
-----END PGP SIGNATURE-----
Login or Register to add favorites

File Archive:

August 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Aug 1st
    15 Files
  • 2
    Aug 2nd
    22 Files
  • 3
    Aug 3rd
    0 Files
  • 4
    Aug 4th
    0 Files
  • 5
    Aug 5th
    15 Files
  • 6
    Aug 6th
    11 Files
  • 7
    Aug 7th
    0 Files
  • 8
    Aug 8th
    0 Files
  • 9
    Aug 9th
    0 Files
  • 10
    Aug 10th
    0 Files
  • 11
    Aug 11th
    0 Files
  • 12
    Aug 12th
    0 Files
  • 13
    Aug 13th
    0 Files
  • 14
    Aug 14th
    0 Files
  • 15
    Aug 15th
    0 Files
  • 16
    Aug 16th
    0 Files
  • 17
    Aug 17th
    0 Files
  • 18
    Aug 18th
    0 Files
  • 19
    Aug 19th
    0 Files
  • 20
    Aug 20th
    0 Files
  • 21
    Aug 21st
    0 Files
  • 22
    Aug 22nd
    0 Files
  • 23
    Aug 23rd
    0 Files
  • 24
    Aug 24th
    0 Files
  • 25
    Aug 25th
    0 Files
  • 26
    Aug 26th
    0 Files
  • 27
    Aug 27th
    0 Files
  • 28
    Aug 28th
    0 Files
  • 29
    Aug 29th
    0 Files
  • 30
    Aug 30th
    0 Files
  • 31
    Aug 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close