VYPR

apk package

wolfi/libgit2

pkg:apk/wolfi/libgit2

Vulnerabilities (2)

  • CVE-2024-24577Feb 6, 2024
    affected < 1.7.2-r0fixed 1.7.2-r0

    libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing to build Git functionality into your application. Using well-crafted inputs to `git_index_add` can cause heap corruption that could be leveraged for arbitrary

  • CVE-2024-24575Feb 6, 2024
    affected < 1.7.2-r0fixed 1.7.2-r0

    libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing to build Git functionality into your application. Using well-crafted inputs to `git_revparse_single` can cause the function to enter an infinite loop, potentia