Home / mailingsPDF  

[SECURITY] [DSA 5769-1] git security update

Posted on 13 September 2024
Debian Security Advisory

- -------------------------------------------------------------------------
Debian Security Advisory DSA-5769-1 security@debian.org
https://www.debian.org/security/ Salvatore Bonaccorso
September 13, 2024 https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package : git
CVE ID : CVE-2023-25652 CVE-2023-25815 CVE-2023-29007 CVE-2024-32002
CVE-2024-32004 CVE-2024-32020 CVE-2024-32021 CVE-2024-32465
Debian Bug : 1034835 1071160

Multiple issues were found in Git, a fast, scalable, distributed
revision control system, which may result in file overwrites outside the
repository, arbitrary configuration injection or arbitrary code
execution.

For the stable distribution (bookworm), these problems have been fixed in
version 1:2.39.5-0+deb12u1.

We recommend that you upgrade your git packages.

For the detailed security status of git please refer to its security
tracker page at:
https://security-tracker.debian.org/tracker/git

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce@lists.debian.org

 

TOP