[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248678

 
 

909

 
 

195426

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

[3.8] gitolite: security issue in optional bundle helper ("rsync" command) (CVE-2018-20683)

ID: oval:org.secpod.oval:def:1801290Date: (C)2019-01-29   (M)2023-11-10
Class: PATCHFamily: unix




commands/rsync in Gitolite before 3.6.11, if .gitolite.rc enables rsync, mishandles the rsync command line, which allows attackers to have a "bad" impact by triggering use of an option other than -v, -n, -q, or -P.

Platform:
Alpine Linux 3.8
Product:
gitolite
Reference:
9885
CVE-2018-20683
CVE    1
CVE-2018-20683
CPE    2
cpe:/o:alpinelinux:alpine_linux:3.8
cpe:/a:sitaram_chamarty:gitolite

© SecPod Technologies