First published: Wed Feb 08 2023(Updated: )
By feeding a crafted input to "git apply", a path outside the working tree can be overwritten as the user who is running "git apply".
Affected Software | Affected Version | How to fix |
---|---|---|
Git |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
REDHAT-BUG-2168161 has significant severity as it allows overwriting paths outside the working tree.
To fix REDHAT-BUG-2168161, update to the latest version of Git that addresses this vulnerability.
REDHAT-BUG-2168161 affects systems using Git that have a specific exploitable version.
REDHAT-BUG-2168161 represents a command injection vulnerability allowing unauthorized file overwriting.
Users running Git with the vulnerable version are impacted by REDHAT-BUG-2168161.