Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Rocky Linux 9 RLSA-2023:0611 Important Git Heap Overflow RCE Issue

rocky
Calendar Grey February 6, 2023
Rockylinux Esm H88
Rocky Linux users should be aware of recent updates addressing significant security vulnerabilities in git, which could threaten system integrity and compromise sensitive data.
Important: git security update

Summary

An update is available for git. This update affects Rocky Linux 9. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RPMs

git-0:2.31.1-3.el9_1.aarch64.rpm

git-0:2.31.1-3.el9_1.ppc64le.rpm

git-0:2.31.1-3.el9_1.s390x.rpm

git-0:2.31.1-3.el9_1.src.rpm

git-0:2.31.1-3.el9_1.x86_64.rpm

git-all-0:2.31.1-3.el9_1.noarch.rpm

git-core-0:2.31.1-3.el9_1.aarch64.rpm

git-core-0:2.31.1-3.el9_1.ppc64le.rpm

git-core-0:2.31.1-3.el9_1.s390x.rpm

git-core-0:2.31.1-3.el9_1.x86_64.rpm

git-core-debuginfo-0:2.31.1-3.el9_1.aarch64.rpm

git-core-debuginfo-0:2.31.1-3.el9_1.ppc64le.rpm

git-core-debuginfo-0:2.31.1-3.el9_1.s390x.rpm

git-core-debuginfo-0:2.31.1-3.el9_1.x86_64.rpm

git-core-doc-0:2.31.1-3.el9_1.noarch.rpm

git-credential-libsecret-0:2.31.1-3.el9_1.aarch64.rpm

git-credential-libsecret-0:2.31.1-3.el9_1.ppc64le.rpm

git-credential-libsecret-0:2.31.1-3.el9_1.s390x.rpm

git-credential-libsecret-0:2.31.1-3.el9_1.x86_64.rpm

git-credential-libsecret-debuginfo-0:2.31.1-3.el9_1.aarch64.rpm

git-credential-libsecret-debuginfo-0:2.31.1-3.el9_1.ppc64le.rpm

git-credential-libsecret-debuginfo-0:2.31.1-3.el9_1.s390x.rpm

Read the Full Advisory

References

No references

CVES

https://www.cve.org/CVERecord?id=CVE-2022-23521

https://www.cve.org/CVERecord?id=CVE-2022-41903

Severity
important

Name: RLSA-2023:0611
Affected Products: Rocky Linux 9

Fixes

https://bugzilla.redhat.com/show_bug.cgi?id=2162055

https://bugzilla.redhat.com/show_bug.cgi?id=2162056


Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here