Записи libgit2 project
5 опубликованных записей вендора libgit2 project.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 100 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-476 NULL Pointer Dereference2
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-125 Out-of-bounds Read1
- CWE-284 Improper Access Control1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
5 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2016-10128Эксплойта нет | Buffer overflow in the git_pkt_parse_line function in transports/smart_pkt.c in the Git Smart Protocol support in libgit2 before 0.24.6 and libgit2 project · libgit2 · CWE-119 | Критическая9,8 | — | 4,0 % | 24 мар. 2017 г. |
31Наблюдать | CVE-2016-10129Эксплойта нет | The Git Smart Protocol support in libgit2 before 0.24.6 and 0.25.x before 0.25.1 allows remote attackers to cause a denial of service (NULL libgit2 project · libgit2 · CWE-476 | Высокая7,5 | — | 3,6 % | 24 мар. 2017 г. |
24Наблюдать | CVE-2016-10130Эксплойта нет | The http_connect function in transports/http.c in libgit2 before 0.24.6 and 0.25.x before 0.25.1 might allow man-in-the-middle attackers to libgit2 project · libgit2 · CWE-284 | Средняя5,9 | — | 1,7 % | 24 мар. 2017 г. |
23Наблюдать | CVE-2016-8568Эксплойта нет | The git_commit_message function in oid.c in libgit2 before 0.24.3 allows remote attackers to cause a denial of service (out-of-bounds read) fedoraproject · fedora · CWE-125 | Средняя5,5 | — | 1,9 % | 3 февр. 2017 г. |
23Наблюдать | CVE-2016-8569Эксплойта нет | The git_oid_nfmt function in commit.c in libgit2 before 0.24.3 allows remote attackers to cause a denial of service (NULL pointer dereferenclibgit2 project · libgit2 · CWE-476 | Средняя5,5 | — | 1,8 % | 3 февр. 2017 г. |
- CVE-2016-1012840В плане
Buffer overflow in the git_pkt_parse_line function in transports/smart_pkt.c in the Git Smart Protocol support in libgit2 before 0.24.6 and
КритическаяCVSS 9,8Эксплойта нетEPSS 4 %libgit2 project · libgit224 мар. 2017 г.
- CVE-2016-1012931Наблюдать
The Git Smart Protocol support in libgit2 before 0.24.6 and 0.25.x before 0.25.1 allows remote attackers to cause a denial of service (NULL
ВысокаяCVSS 7,5Эксплойта нетEPSS 4 %libgit2 project · libgit224 мар. 2017 г.
- CVE-2016-1013024Наблюдать
The http_connect function in transports/http.c in libgit2 before 0.24.6 and 0.25.x before 0.25.1 might allow man-in-the-middle attackers to
СредняяCVSS 5,9Эксплойта нетEPSS 2 %libgit2 project · libgit224 мар. 2017 г.
- CVE-2016-856823Наблюдать
The git_commit_message function in oid.c in libgit2 before 0.24.3 allows remote attackers to cause a denial of service (out-of-bounds read)
СредняяCVSS 5,5Эксплойта нетEPSS 2 %fedoraproject · fedora3 февр. 2017 г.
- CVE-2016-856923Наблюдать
The git_oid_nfmt function in commit.c in libgit2 before 0.24.3 allows remote attackers to cause a denial of service (NULL pointer dereferenc
СредняяCVSS 5,5Эксплойта нетEPSS 2 %libgit2 project · libgit23 февр. 2017 г.