libgit2 project kayıtları
libgit2 project üreticisine ait 5 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-476 NULL Pointer Dereference2
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-125 Out-of-bounds Read1
- CWE-284 Improper Access Control1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
5 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2016-10128İstismar yok | Buffer overflow in the git_pkt_parse_line function in transports/smart_pkt.c in the Git Smart Protocol support in libgit2 before 0.24.6 and libgit2 project · libgit2 · CWE-119 | Kritik9,8 | — | %4,0 | 24 Mar 2017 |
31İzleyin | CVE-2016-10129İstismar yok | The Git Smart Protocol support in libgit2 before 0.24.6 and 0.25.x before 0.25.1 allows remote attackers to cause a denial of service (NULL libgit2 project · libgit2 · CWE-476 | Yüksek7,5 | — | %3,6 | 24 Mar 2017 |
24İzleyin | CVE-2016-10130İstismar yok | The http_connect function in transports/http.c in libgit2 before 0.24.6 and 0.25.x before 0.25.1 might allow man-in-the-middle attackers to libgit2 project · libgit2 · CWE-284 | Orta5,9 | — | %1,7 | 24 Mar 2017 |
23İzleyin | CVE-2016-8568İstismar yok | The git_commit_message function in oid.c in libgit2 before 0.24.3 allows remote attackers to cause a denial of service (out-of-bounds read) fedoraproject · fedora · CWE-125 | Orta5,5 | — | %1,9 | 3 Şub 2017 |
23İzleyin | CVE-2016-8569İstismar yok | The git_oid_nfmt function in commit.c in libgit2 before 0.24.3 allows remote attackers to cause a denial of service (NULL pointer dereferenclibgit2 project · libgit2 · CWE-476 | Orta5,5 | — | %1,8 | 3 Şub 2017 |
- CVE-2016-1012840Planlayın
Buffer overflow in the git_pkt_parse_line function in transports/smart_pkt.c in the Git Smart Protocol support in libgit2 before 0.24.6 and
KritikCVSS 9,8İstismar yokEPSS %4libgit2 project · libgit224 Mar 2017
- CVE-2016-1012931İzleyin
The Git Smart Protocol support in libgit2 before 0.24.6 and 0.25.x before 0.25.1 allows remote attackers to cause a denial of service (NULL
YüksekCVSS 7,5İstismar yokEPSS %4libgit2 project · libgit224 Mar 2017
- CVE-2016-1013024İzleyin
The http_connect function in transports/http.c in libgit2 before 0.24.6 and 0.25.x before 0.25.1 might allow man-in-the-middle attackers to
OrtaCVSS 5,9İstismar yokEPSS %2libgit2 project · libgit224 Mar 2017
- CVE-2016-856823İzleyin
The git_commit_message function in oid.c in libgit2 before 0.24.3 allows remote attackers to cause a denial of service (out-of-bounds read)
OrtaCVSS 5,5İstismar yokEPSS %2fedoraproject · fedora3 Şub 2017
- CVE-2016-856923İzleyin
The git_oid_nfmt function in commit.c in libgit2 before 0.24.3 allows remote attackers to cause a denial of service (NULL pointer dereferenc
OrtaCVSS 5,5İstismar yokEPSS %2libgit2 project · libgit23 Şub 2017