[CLSA-2023:1677096181] git: Fix of 4 CVEs
Type:
security
Severity:
Critical
Release date:
2023-02-22
Description:
- CVE-2022-41903: fix out-of-bounds write caused by integer overflow - CVE-2021-40330: forbid newlines in host and path - CVE-2022-39260: reject too long command line strings - CVE-2023-23946: prevent git-apply from writing behind newly created symbolic links
Updated packages:
  • emacs-git-1.7.1-10.el6_10.tuxcare.els1.noarch.rpm
    sha:c6aa54a0deff49423e8ca838dbf47270b5036272
  • emacs-git-el-1.7.1-10.el6_10.tuxcare.els1.noarch.rpm
    sha:41b49d8f4610fd73e9270fb47191d2773763c86f
  • git-1.7.1-10.el6_10.tuxcare.els1.x86_64.rpm
    sha:f4c5f338d80ee296ad82002e8ac9d1742dba3ac3
  • git-all-1.7.1-10.el6_10.tuxcare.els1.noarch.rpm
    sha:bc021e1b063d5df69528ea4668168d35220e483b
  • git-cvs-1.7.1-10.el6_10.tuxcare.els1.noarch.rpm
    sha:354cee630d1a533fd80cd7240878d49b20d321c5
  • git-daemon-1.7.1-10.el6_10.tuxcare.els1.x86_64.rpm
    sha:c8cc94348810c0033d92100500d312e6bbd01b67
  • git-email-1.7.1-10.el6_10.tuxcare.els1.noarch.rpm
    sha:9193b9f661f60d4a1c7f20e5e9dbf0898c034e4f
  • git-gui-1.7.1-10.el6_10.tuxcare.els1.noarch.rpm
    sha:630fe9c9dc88d80c701ef9d4e2c83a13adfb1884
  • git-svn-1.7.1-10.el6_10.tuxcare.els1.noarch.rpm
    sha:c62fbce98274b83812c44a5a83ccd55f898696ae
  • gitk-1.7.1-10.el6_10.tuxcare.els1.noarch.rpm
    sha:7db2398038f5b1ed2373020b9043574831e671ba
  • gitweb-1.7.1-10.el6_10.tuxcare.els1.noarch.rpm
    sha:208ab7486d69426aa836adc1e6e967326404504f
  • perl-Git-1.7.1-10.el6_10.tuxcare.els1.noarch.rpm
    sha:48ae3c4dc1d5a0d27f10d490b14320b3eaed254d
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.