Debian Security Update DSA-4263 cgit - security update

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,813
Reaction score
74
Credits
-1,257
Jann Horn discovered a directory traversal vulnerability in cgit, a fast web frontend for git repositories written in C. A remote attacker can take advantage of this flaw to retrieve arbitrary files via a specially crafted request, when 'enable-http-clone=1' (default) is not turned off.

Continue reading...
 


Follow Linux.org

Members online

No members online now.

Top