Red Hat Security Advisory 2020-3581-01 - Git is a distributed revision control system with a decentralized architecture. As opposed to centralized version control systems with a client-server model, Git ensures that each working copy of a Git repository is an exact copy with complete revision history. This not only allows the user to work on and contribute to projects without the need to have permission to push the changes to their official repositories, but also makes it possible for the user to work with no network connection. Issues addressed include a password leak vulnerability.
ad853c6d567b09664b902360df96adf9938e41523967c5d88fb4937412a5c0ba
Debian Linux Security Advisory 4657-1 - Felix Wilhelm of Google Project Zero discovered a flaw in git, a fast, scalable, distributed revision control system. With a crafted URL that contains a newline, the credential helper machinery can be fooled to return credential information for a wrong host.
ce8ec173f3d76b1ac080eefe167ec67f57b23d1913659b9bb470439c7a7194d0
Gentoo Linux Security Advisory 202004-13 - Multiple vulnerabilities have been found in Git which might all allow attackers to access sensitive information. Versions less than 2.26.2 are affected.
862a28af41503547a97dcc01c1875ab49c70676db9948955cb81cca3132e5fb9
Red Hat Security Advisory 2020-1513-01 - Git is a distributed revision control system with a decentralized architecture. A credential leak vulnerability has been addressed.
c4caf637667ce99c4f0bd3337c845778695775264de1fe4ea35bc47925161cf4
Red Hat Security Advisory 2020-1518-01 - Git is a distributed revision control system with a decentralized architecture. A credential leak vulnerability has been addressed.
b1e3d6080cfa1645a6b7c274fe2026fefe3426f7b2a1a3724f1fcf04cfd1d6a1
Red Hat Security Advisory 2020-1511-01 - Git is a distributed revision control system with a decentralized architecture. A credential leak vulnerability was addressed.
005df15df994c6f92a7dc8519ab369eac289252bdb58e17fee747d70b01755cd
Red Hat Security Advisory 2020-1503-01 - Git is a distributed revision control system with a decentralized architecture. A credential leak issue has been addressed.
039638d0031ac321f2d4bfae22da8a54c33ec834eddcdecfc074b7ef007149d7
A git clone action can leak cached / stored credentials for github.com to example.com due to insecure handling of newlines in the credential helper protocol.
6ed18788c9d0b689b962cf0717c7f1295a605925baa43166ab82599970c79913
Ubuntu Security Notice 4329-1 - Felix Wilhelm discovered that Git incorrectly handled certain URLs that included newlines. A remote attacker could possibly use this issue to trick Git into returning credential information for a wrong host.
c507f897a077e45f8e138f77a383e2e59f2ee92189aa4eff179d2ffee8fb105c