CVE Browser
Search and filter CVEs by severity, ecosystem, EPSS score, and more.
Page 1
libgit2: HTTP transport can leak credentials to an offsite redirect target
libgit2: Inverted IP SubjectAltName Comparison in OpenSSL Backend
libgit2: Unbounded Memory Allocation via Delta Object Result-Size Header
libgit2 - Unauthenticated network-reachable heap out-of-bounds read in transports/smart_pkt.c:set_data
libgit2: Submodule path traversal
libgit2 Shell Command Injection via ssh_libssh2 Backend
libgit2 is vulnerable to arbitrary code execution due to heap corruption in `git_index_add`
libgit2 is vulnerable to a denial of service attack in `git_revparse_single`
libgit2 fails to verify SSH keys by default
libgit2: NTFS protections inactive when running Git in the Windows Subsystem for Linux
libgit2: files inside the .git directory may be overwritten during cloning via NTFS Alternate Data Streams
git: arbitrary command execution vulnerability on case-insensitive file systems
libgit2: out-of-bounds reads when processing smart-protocol ng packets
A flaw was found in libgit2 before version 0.27.3. A missing check in git_delta_apply function in delta.c file, may lead to an out-of-bound read while reading…
A flaw was found in libgit2 before version 0.27.3. It has been discovered that an unexpected sign extension in git_delta_apply function in delta.c file may lea…
libgit2: denial of service (DoS) via crafted repository index files
libgit2: denial of service (DoS) via crafted repository index files
The http_connect function in transports/http.c in libgit2 before 0.24.6 and 0.25.x before 0.25.1 might allow man-in-the-middle attackers to spoof servers by le…
The Git Smart Protocol support in libgit2 before 0.24.6 and 0.25.x before 0.25.1 allows remote attackers to cause a denial of service (NULL pointer dereference…
Buffer overflow in the git_pkt_parse_line function in transports/smart_pkt.c in the Git Smart Protocol support in libgit2 before 0.24.6 and 0.25.x before 0.25.…
The git_oid_nfmt function in commit.c in libgit2 before 0.24.3 allows remote attackers to cause a denial of service (NULL pointer dereference) via a cat-file c…
The git_commit_message function in oid.c in libgit2 before 0.24.3 allows remote attackers to cause a denial of service (out-of-bounds read) via a cat-file comm…
Showing 1 to 22 CVEs · page 1