First published: Fri Feb 09 2018(Updated: )
GIT version 2.15.1 and earlier contains a Input Validation Error vulnerability in Client that can result in problems including messing up terminal configuration to RCE. This attack appear to be exploitable via The user must interact with a malicious git server, (or have their traffic modified in a MITM attack).
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Git Git-shell | <=2.15.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-1000021 is a vulnerability in GIT version 2.15.1 and earlier that allows for an input validation error, potentially leading to a remote code execution (RCE) attack.
CVE-2018-1000021 has a severity rating of 8.8 out of 10, indicating a high severity.
The affected software for CVE-2018-1000021 is Git version 2.15.1 and earlier.
CVE-2018-1000021 can result in problems such as messing up terminal configuration or enabling remote code execution (RCE).
CVE-2018-1000021 can be exploited by interacting with a malicious git server or having traffic modified in a man-in-the-middle attack.