Candidate: CVE-2013-4451 PublicDate: 2018-09-21 17:29:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4451 Description: gitolite commit fa06a34 through 3.5.3 might allow attackers to have unspecified impact via vectors involving world-writable permissions when creating (1) ~/.gitolite.rc, (2) ~/.gitolite, or (3) ~/repositories/gitolite-admin.git on fresh installs. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H [9.8 CRITICAL] Patches_gitolite: upstream_gitolite: needs-triage lucid_gitolite: DNE precise_gitolite: not-affected quantal_gitolite: not-affected raring_gitolite: not-affected saucy_gitolite: not-affected devel_gitolite: not-affected Patches_gitolite3: upstream_gitolite3: needs-triage lucid_gitolite3: DNE precise_gitolite3: DNE quantal_gitolite3: DNE raring_gitolite3: DNE saucy_gitolite3: DNE devel_gitolite3: DNE