[Git][security-tracker-team/security-tracker][master] Track fixed version for git issues via unstable
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Thu Jul 31 04:50:33 BST 2025
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
ae950ca9 by Salvatore Bonaccorso at 2025-07-31T05:50:06+02:00
Track fixed version for git issues via unstable
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -6744,17 +6744,17 @@ CVE-2025-48386 (Git is a fast, scalable, distributed revision control system wit
NOTE: https://lore.kernel.org/git/xmqq5xg2wrd1.fsf@gitster.g/
NOTE: Fixed by: https://github.com/git/git/commit/9de345cb273cc7faaeda279c7e07149d8a15a319 (v2.43.7)
CVE-2025-48385 (Git is a fast, scalable, distributed revision control system with an u ...)
- - git <unfixed> (bug #1108983)
+ - git 1:2.50.1-0.1 (bug #1108983)
NOTE: https://github.com/git/git/security/advisories/GHSA-m98c-vgpc-9655
NOTE: https://lore.kernel.org/git/xmqq5xg2wrd1.fsf@gitster.g/
NOTE: Fixed by: https://github.com/git/git/commit/35cb1bb0b92c132249d932c05bbd860d410e12d4 (v2.43.7)
CVE-2025-48384 (Git is a fast, scalable, distributed revision control system with an u ...)
- - git <unfixed> (bug #1108983)
+ - git 1:2.50.1-0.1 (bug #1108983)
NOTE: https://github.com/git/git/security/advisories/GHSA-vwqx-4fm8-6qc9
NOTE: https://lore.kernel.org/git/xmqq5xg2wrd1.fsf@gitster.g/
NOTE: Fixed by: https://github.com/git/git/commit/05e9cd64ee23bbadcea6bcffd6660ed02b8eab89 (2.43.7)
CVE-2025-46835 (Git GUI allows you to use the Git source control management tools via ...)
- - git <unfixed> (bug #1108983)
+ - git 1:2.50.1-0.1 (bug #1108983)
NOTE: https://lore.kernel.org/git/xmqq5xg2wrd1.fsf@gitster.g/
NOTE: Merge commit: https://github.com/git/git/commit/d61cfed2c23705fbeb9c0d08f59e75ee08738950 (v2.43.7)
CVE-2025-46334 (Git GUI allows you to use the Git source control management tools via ...)
@@ -6762,7 +6762,7 @@ CVE-2025-46334 (Git GUI allows you to use the Git source control management tool
NOTE: https://lore.kernel.org/git/xmqq5xg2wrd1.fsf@gitster.g/
NOTE: Merge commit: https://github.com/git/git/commit/d61cfed2c23705fbeb9c0d08f59e75ee08738950 (v2.43.7)
CVE-2025-27614 (Gitk is a Tcl/Tk based Git history browser. Starting with 2.41.0, a Gi ...)
- - git <unfixed> (bug #1108983)
+ - git 1:2.50.1-0.1 (bug #1108983)
[bookworm] - git <not-affected> (Vulnerable code not present)
[bullseye] - git <not-affected> (Vulnerable code not present)
NOTE: https://lore.kernel.org/git/xmqq5xg2wrd1.fsf@gitster.g/
@@ -6770,7 +6770,7 @@ CVE-2025-27614 (Gitk is a Tcl/Tk based Git history browser. Starting with 2.41.0
NOTE: Introduced after: https://github.com/git/git/commit/bb5cb23daf751790950ff9f761f8884e21c88d00 (v2.41.0)
NOTE: Fixed by: https://github.com/git/git/commit/8e3070aa5e331be45d4d03e3be41f84494fce129 (v2.43.7)
CVE-2025-27613 (Gitk is a Tcl/Tk based Git history browser. Starting with 1.7.0, when ...)
- - git <unfixed> (bug #1108983)
+ - git 1:2.50.1-0.1 (bug #1108983)
NOTE: https://lore.kernel.org/git/xmqq5xg2wrd1.fsf@gitster.g/
NOTE: Merge commit: https://github.com/git/git/commit/d61cfed2c23705fbeb9c0d08f59e75ee08738950 (v2.43.7)
CVE-2024-36357 (A transient execution vulnerability in some AMD processors may allow a ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ae950ca945a78770d08bc0d06c15a6f45dce7990
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ae950ca945a78770d08bc0d06c15a6f45dce7990
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250731/6915195e/attachment.htm>
More information about the debian-security-tracker-commits
mailing list