CVE-2015-7545

Priority
Description
The (1) git-remote-ext and (2) unspecified other remote helper programs in
Git before 2.3.10, 2.4.x before 2.4.10, 2.5.x before 2.5.4, and 2.6.x
before 2.6.1 do not properly restrict the allowed protocols, which might
allow remote attackers to execute arbitrary code via a URL in a (a)
.gitmodules file or (b) unknown other sources in a submodule.
Assigned-to
mdeslaur
More Information

Updated: 2018-10-22 14:09:20 UTC (commit 03ef231d584286304e54ae60f0de485bd42f2da8)