=========================================================================Ubuntu Security Notice USN-5511-1
July 13, 2022

git vulnerabilities
=========================================================================
A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 22.04 LTS
- Ubuntu 21.10
- Ubuntu 20.04 LTS
- Ubuntu 18.04 LTS

Summary:

Git could be made to run arbitrary commands as an administrator
if it received specially crafted inputs.

Software Description:
- git: fast, scalable, distributed revision control system

Details:

Carlo Marcelo Arenas Belón discovered that an issue related to CVE-2022-24765
still affected Git. An attacker could possibly use this issue to
run arbitrary commands as administrator. (CVE-2022-29187)

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 22.04 LTS:
  git                             1:2.34.1-1ubuntu1.4

Ubuntu 21.10:
  git                             1:2.32.0-1ubuntu1.3

Ubuntu 20.04 LTS:
  git                             1:2.25.1-1ubuntu3.5

Ubuntu 18.04 LTS:
  git                             1:2.17.1-1ubuntu0.12

In general, a standard system update will make all the necessary changes.

References:
  https://ubuntu.com/security/notices/USN-5511-1
  CVE-2022-29187

Package Information:
  https://launchpad.net/ubuntu/+source/git/1:2.34.1-1ubuntu1.4
  https://launchpad.net/ubuntu/+source/git/1:2.32.0-1ubuntu1.3
  https://launchpad.net/ubuntu/+source/git/1:2.25.1-1ubuntu3.5
  https://launchpad.net/ubuntu/+source/git/1:2.17.1-1ubuntu0.12

Ubuntu 5511-1: Git vulnerabilities

July 13, 2022
Git could be made to run arbitrary commands as an administrator if it received specially crafted inputs.

Summary

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 22.04 LTS: git 1:2.34.1-1ubuntu1.4 Ubuntu 21.10: git 1:2.32.0-1ubuntu1.3 Ubuntu 20.04 LTS: git 1:2.25.1-1ubuntu3.5 Ubuntu 18.04 LTS: git 1:2.17.1-1ubuntu0.12 In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-5511-1

CVE-2022-29187

Severity
July 13, 2022

Package Information

https://launchpad.net/ubuntu/+source/git/1:2.34.1-1ubuntu1.4 https://launchpad.net/ubuntu/+source/git/1:2.32.0-1ubuntu1.3 https://launchpad.net/ubuntu/+source/git/1:2.25.1-1ubuntu3.5 https://launchpad.net/ubuntu/+source/git/1:2.17.1-1ubuntu0.12

Related News