Skip to content
Noroxi

libgit2 records

11 published records for vendor libgit2.

Researcher profile

Entered KEV
0 · 0%
Weaponized
1 · 9.1%
Pre-auth RCE
4
With a fix record
100%
Median publish → KEV
No record has entered KEV

All records

11 records
  • CVE-2014-9390
    62This week

    Git before 1.8.5.6, 1.9.x before 1.9.5, 2.0.x before 2.0.5, 2.1.x before 2.1.4, and 2.2.x before 2.2.1 on Windows and OS X; Mercurial before

    CriticalCVSS 9.8WeaponizedEPSS 76%

    mercurial · mercurialFeb 11, 2020

  • An issue was discovered in libgit2 before 0.28.4 and 0.9x before 0.99.0.

    CriticalCVSS 9.8No exploitEPSS 5%

    libgit2 · libgit2Apr 27, 2020

  • An issue was discovered in libgit2 before 0.28.4 and 0.9x before 0.99.0.

    CriticalCVSS 9.8No exploitEPSS 5%

    libgit2 · libgit2Apr 27, 2020

  • libgit2 is vulnerable to arbitrary code execution due to heap corruption in `git_index_add`

    CriticalCVSS 9.8No exploitEPSS 2%

    libgit2 · libgit2Feb 6, 2024

  • A flaw was found in libgit2 before version 0.27.3.

    HighCVSS 8.1No exploitEPSS 2%

    libgit2 · libgit2Jul 10, 2018

  • In ng_pkt in transports/smart_pkt.c in libgit2 before 0.26.6 and 0.27.x before 0.27.4, a remote attacker can send a crafted smart-protocol "

    HighCVSS 7.5No exploitEPSS 4%

    libgit2 · libgit2Aug 17, 2018

  • libgit2 is vulnerable to a denial of service attack in `git_revparse_single`

    HighCVSS 7.5No exploitEPSS 1%

    libgit2 · libgit2Feb 6, 2024

  • A flaw was found in libgit2 before version 0.27.3.

    MediumCVSS 6.5No exploitEPSS 2%

    libgit2 · libgit2Jul 10, 2018

  • CVE-2018-8098
    26Monitor

    Integer overflow in the index.c:read_entry() function while decompressing a compressed prefix length in libgit2 before v0.26.2 allows an att

    MediumCVSS 6.5No exploitEPSS 1%

    libgit2 · libgit2Mar 13, 2018

  • CVE-2018-8099
    26Monitor

    Incorrect returning of an error code in the index.c:read_entry() function leads to a double free in libgit2 before v0.26.2, which allows an

    MediumCVSS 6.5No exploitEPSS 1%

    libgit2 · libgit2Mar 13, 2018

  • libgit2 fails to verify SSH keys by default

    MediumCVSS 5.9No exploitEPSS 1%

    libgit2 · libgit2Jan 20, 2023