Back

CRITICAL

git: path_name() integer truncation and overflow leading to buffer overflow

Published Apr 8, 2016

Description

Integer overflow in Git before 2.7.4 allows remote attackers to execute arbitrary code via a (1) long filename or (2) many nested trees, which triggers a heap-based buffer overflow.

Affected products

Remediation

Red Hat statement

Red Hat Product Security has rated these issues as having Important security impact. For additional information, refer to the Red Hat Knowledgebase article: https://access.redhat.com/articles/2201201

Metrics

References (28)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Apr 8, 2016
Updated Aug 5, 2024
Reserved Feb 11, 2016
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Important
Public date Mar 6, 2016