VYPR

rpm package

suse/git&distro=SUSE Linux Enterprise Server for SAP Applications 12 SP4

pkg:rpm/suse/git&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP4

Vulnerabilities (22)

  • CVE-2019-19604Dec 10, 2019
    affected < 2.12.3-27.22.1fixed 2.12.3-27.22.1

    Arbitrary command execution is possible in Git before 2.20.2, 2.21.x before 2.21.1, 2.22.x before 2.22.2, 2.23.x before 2.23.1, and 2.24.x before 2.24.1 because a "git submodule update" operation can run commands found in the .gitmodules file of a malicious repository.

  • CVE-2018-17456Oct 6, 2018
    affected < 2.12.3-27.17.2fixed 2.12.3-27.17.2

    Git before 2.14.5, 2.15.x before 2.15.3, 2.16.x before 2.16.5, 2.17.x before 2.17.2, 2.18.x before 2.18.1, and 2.19.x before 2.19.1 allows remote code execution during processing of a recursive "git clone" of a superproject if a .gitmodules file has a URL field beginning with a '

Page 2 of 2