Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 544
Alerts This Week
Warning Icon 1 544

Fedora 21: FEDORA-2015-4575 Critical: Python-Dulwich Code Execution

fedora
Calendar Grey April 10, 2015
Scroller Fedora
Debian 10 issued an essential update for python-requests tackling the CVE-2020-3906 security flaw promptly.
Fix for CVE-2014-9706 (rhbz#1204889, rhbz#1204890, and rhbz#1204891)

Summary

Dulwich is a pure-Python implementation of the Git file formats and

protocols. The project is named after the village in which Mr. and

Mrs. Git live in the Monty Python sketch.

Update Information:

Fix for CVE-2014-9706 (rhbz#1204889, rhbz#1204890, and rhbz#1204891)

Change Log

* Mon Mar 23 2015 Fabian Affolter - 0.10.0-1 - Fix for CVE-2014-9706 (rhbz#1204889, rhbz#1204890, and rhbz#1204891) - Update to new upstream version 0.10.0 * Mon Mar 23 2015 Fabian Affolter - 0.9.9-1 - Update to new upstream version 0.9.9

References


[ 1 ] Bug #1204889 - CVE-2014-9706 python-dulwich: arbitrary files allowed to be commited, leading to code execution https://bugzilla.redhat.com/show_bug.cgi?id=1204889

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update python-dulwich' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
critical
Lowest
Low
Medium
High
Critical

Name: python-dulwich
Product: Fedora 21
Version: 0.10.0
Release: 1.fc21
URL:
Summary: A python implementation of the Git file formats and protocols

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.