REDHAT-BUG-2315805: Pagure vulnerability
Published Oct 1, 2024
·Updated
An argument injection on Git during retrieval of repository history leads to remote code execution on the Pagure instance.
Affected Software
2 affected components
Pagure Pagure
Git Git
Event History
Oct 1, 2024
Data Sourced
via Red Hat·01:26 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2315805?
The severity of REDHAT-BUG-2315805 is critical due to its potential for remote code execution.
2
How do I fix REDHAT-BUG-2315805?
To fix REDHAT-BUG-2315805, it is recommended to update to the latest patched version of Pagure and Git.
3
What systems are affected by REDHAT-BUG-2315805?
REDHAT-BUG-2315805 affects instances of Pagure and Git that handle repository history retrieval.
4
What type of vulnerability is REDHAT-BUG-2315805?
REDHAT-BUG-2315805 is categorized as an argument injection vulnerability.
5
Can REDHAT-BUG-2315805 be exploited remotely?
Yes, REDHAT-BUG-2315805 can be exploited remotely, allowing an attacker to execute arbitrary code.