Oval Definition:oval:com.ubuntu.xenial:def:201493900000000
Revision Date:2020-02-12Version:1
Title:CVE-2014-9390 on Ubuntu 16.04 LTS (xenial) - medium.
Description:Git before 1.8.5.6, 1.9.x before 1.9.5, 2.0.x before 2.0.5, 2.1.x before 2.1.4, and 2.2.x before 2.2.1 on Windows and OS X; Mercurial before 3.2.3 on Windows and OS X; Apple Xcode before 6.2 beta 3; mine; libgit2; Egit; and JGit allow remote Git servers to execute arbitrary commands via a tree containing a crafted .git/config file with (1) an ignorable Unicode codepoint, (2) a git~1/config representation, or (3) mixed case that is improperly handled on a case-insensitive filesystem.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2014-9390
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND Package Information
  • git package in xenial was vulnerable but has been fixed (note: '1:2.1.4-2').
  • OR jgit package in xenial, is related to the CVE in some way and has been fixed (note: '3.7.1-2').
  • OR libgit2 package in xenial, is related to the CVE in some way and has been fixed (note: '0.24.1-2').
  • OR mercurial package in xenial, is related to the CVE in some way and has been fixed (note: '3.1.2-2').
  • BACK