Dulwich Project Dulwich 0.8.1

CPE Details

Dulwich Project Dulwich 0.8.1
0.8.1
2020-02-04
16h37 +00:00
2020-02-04
16h37 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:dulwich_project:dulwich:0.8.1:*:*:*:*:*:*:*

Informations

Vendor

dulwich_project

Product

dulwich

Version

0.8.1

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2017-16228 2017-10-29 19h00 +00:00 Dulwich before 0.18.5, when an SSH subprocess is used, allows remote attackers to execute arbitrary commands via an ssh URL with an initial dash character in the hostname, a related issue to CVE-2017-9800, CVE-2017-12836, CVE-2017-12976, CVE-2017-1000116, and CVE-2017-1000117.
9.8
Critique
CVE-2014-9706 2015-03-31 12h00 +00:00 The build_index_from_tree function in index.py in Dulwich before 0.9.9 allows remote attackers to execute arbitrary code via a commit with a directory path starting with .git/, which is not properly handled when checking out a working tree.
7.5
CVE-2015-0838 2015-03-31 12h00 +00:00 Buffer overflow in the C implementation of the apply_delta function in _pack.c in Dulwich before 0.9.9 allows remote attackers to execute arbitrary code via a crafted pack file.
7.5