USN-6050-1: Git vulnerabilities
It was discovered that Git incorrectly handled certain commands. An attacker could possibly use this issue to overwriting some paths. (CVE-2023-25652) Maxime Escourbiac and Yassine BENGANA discovered that Git incorrectly handled some gettext machinery. An attacker could possibly use this issue to allows the malicious placement of crafted messages. (CVE-2023-25815) André Baptista and Vítor Pinho discovered that Git incorrectly handled certain configurations. An attacker could possibly use this issue to arbitrary configuration injection. (CVE-2023-29007)
Affected Software
Event History
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
What is the severity of USN-6050-1?
The severity of USN-6050-1 is categorized as important due to the potential for path overwriting by an attacker.
How do I fix USN-6050-1?
To fix USN-6050-1, you should upgrade Git to the latest version specified in your distribution's security notice.
Which versions of Git are affected by USN-6050-1?
USN-6050-1 affects specific versions of Git on Ubuntu 18.04, 20.04, 22.04, 22.10, and 23.04.
What kind of attacks are possible with USN-6050-1?
An attacker may exploit USN-6050-1 to overwrite certain paths, potentially leading to unauthorized file modifications.
Who discovered the vulnerability related to USN-6050-1?
The vulnerability related to USN-6050-1 was discovered by Maxime Escourbiac and Yassine BENGANA.