=========================================================================Ubuntu Security Notice USN-5686-2
November 17, 2022

git vulnerability
=========================================================================
A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 16.04 ESM

Summary:

Git could be made to crash or run programs as your login if it
received specially crafted input.

Software Description:
- git: fast, scalable, distributed revision control system

Details:

USN-5686-1 fixed several vulnerabilities in Git. This update
provides the corresponding fix for CVE-2022-39260 on Ubuntu 16.04 ESM.

Original advisory details:

  Kevin Backhouse discovered that Git incorrectly handled certain command
  strings. An attacker could possibly use this issue to cause a crash or
  arbitrary code execution.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 16.04 ESM:
   git                             1:2.7.4-0ubuntu1.10+esm3

In general, a standard system update will make all the necessary changes.

References:
   https://ubuntu.com/security/notices/USN-5686-2
   https://ubuntu.com/security/notices/USN-5686-1
   CVE-2022-39260

Ubuntu 5686-2: Git vulnerability

November 17, 2022
Git could be made to crash or run programs as your login if it received specially crafted input.

Summary

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 16.04 ESM: git 1:2.7.4-0ubuntu1.10+esm3 In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-5686-2

https://ubuntu.com/security/notices/USN-5686-1

CVE-2022-39260

Severity
November 17, 2022

Package Information

Related News