[ALSA-2023:0610] Important: git security update
Type:
security
Severity:
important
Release date:
2023-02-07
Description:
Git is a distributed revision control system with a decentralized architecture. As opposed to centralized version control systems with a client-server model, Git ensures that each working copy of a Git repository is an exact copy with complete revision history. This not only allows the user to work on and contribute to projects without the need to have permission to push the changes to their official repositories, but also makes it possible for the user to work with no network connection. Security Fix(es): * git: gitattributes parsing integer overflow (CVE-2022-23521) * git: Heap overflow in `git archive`, `git log --format` leading to RCE (CVE-2022-41903) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 git-core-2.31.1-3.el8_7.aarch64.rpm 138ef77a47010f0c61f0a2e7be70506b6889ae66c15588cc3bd2b0d97f2d3dff
aarch64 git-daemon-2.31.1-3.el8_7.aarch64.rpm 8be2c413893dd7398cc2dad25c368e1d5728e6021a2ac46e636c73bec69a0fb1
aarch64 git-credential-libsecret-2.31.1-3.el8_7.aarch64.rpm 960d7534f7ab97f4c6c1ac64a6fd83645ad07a4e7b25da5862bec731ea9cf11c
aarch64 git-2.31.1-3.el8_7.aarch64.rpm b1648a808b29263999ea4847da53a1d7835de61d6aa6baa2817421e3da6fbd79
aarch64 git-subtree-2.31.1-3.el8_7.aarch64.rpm ecb5cd2e1449bde5b7ce7b17a38b0c3712f7e8f6f4045290a99f3e0db132a86b
noarch git-email-2.31.1-3.el8_7.noarch.rpm 14f9de4f5dacb6ed1174a24ff1102315c4caba87f0bfd9ff2e2cdd876569d6e2
noarch perl-Git-SVN-2.31.1-3.el8_7.noarch.rpm 4cf7fc6988501c4d496d6679f6149279a746e1ef748aa36756367f102eab8f05
noarch git-core-doc-2.31.1-3.el8_7.noarch.rpm 6730415652dc4c3352bff2ae2f1fbb2840fb5afbd6d47cbb6162d192cc9a74e9
noarch git-instaweb-2.31.1-3.el8_7.noarch.rpm 746176783d16b76b380ceb4307860ffc0506ce0ef7e402d8b329ead172d2468a
noarch gitk-2.31.1-3.el8_7.noarch.rpm 74c17e266e90832ca15c2f75a21800d3ba512027e9d9245b8d0f3bf0aa508f5c
noarch git-all-2.31.1-3.el8_7.noarch.rpm 8eb22ce750561562bbd95a8b64f8f9c04e15972a5d2563894f457c524dde8688
noarch git-svn-2.31.1-3.el8_7.noarch.rpm a7b0ba97dceddef3e049e955da698190367bc0adf3ea8c44a5914d0641ba24f6
noarch gitweb-2.31.1-3.el8_7.noarch.rpm be1e3cc0e68ec12c3acbcc98bb867b46f769c07591a162222f18dfccc5d329e5
noarch git-gui-2.31.1-3.el8_7.noarch.rpm d9c1bc5f5cd618ced18ab4f8f4adede56850424aa7880d1302318a1c8a34ae19
noarch perl-Git-2.31.1-3.el8_7.noarch.rpm f1f0996819d49cf41959d3aaff0febf6c8114cb747a344b11c28830b4638e163
ppc64le git-core-2.31.1-3.el8_7.ppc64le.rpm 0fadf549383b7a99e0057ac95651ee4e0d609f64a04f93c6711148b0387296c5
ppc64le git-2.31.1-3.el8_7.ppc64le.rpm 1b2593f141f10407b8983ec78c88a700beebf750746ea5b2f5437de8aa385413
ppc64le git-subtree-2.31.1-3.el8_7.ppc64le.rpm 964e4e7873e254074408995de2fbf5a8eeda12e5a6508c0b4f2af5301ad40072
ppc64le git-daemon-2.31.1-3.el8_7.ppc64le.rpm a361847d08622f892d71e23a9ce0aa353db9c811eb6ab140c561ab3a7853e8aa
ppc64le git-credential-libsecret-2.31.1-3.el8_7.ppc64le.rpm f465c0a28a3a805d83d1a74e579c779059dc6d169d1a6c06d149adc91301dd23
s390x git-credential-libsecret-2.31.1-3.el8_7.s390x.rpm 7d5fc92e0a13d74662e8920865db70f09478c0c6a83e8d530ff3cf27fb815dca
s390x git-daemon-2.31.1-3.el8_7.s390x.rpm 892983507181042fbcf88be1690513d3f4ffb9b0512fa9740ce1024e7c7729b2
s390x git-core-2.31.1-3.el8_7.s390x.rpm dc1e20801444278809bd2626aea3a216da5572e29c990856e26551776a5a8e58
s390x git-2.31.1-3.el8_7.s390x.rpm e721117d3ddeaeb9345c95689c896708927a59d447c5b0d17a8c499e3b70bd97
s390x git-subtree-2.31.1-3.el8_7.s390x.rpm edbadf426f1fee2ee84ebf423a0dbcd0cc8e8dcc72e8a71464e6ad712d216c7f
x86_64 git-2.31.1-3.el8_7.x86_64.rpm 18704c51b57883ed80285439d811cf42113863714a212067d9366fd4928f6fff
x86_64 git-subtree-2.31.1-3.el8_7.x86_64.rpm 8262773f31600ffdef3162f698f72b9a97995d5c6b0cdfc366149716d092e017
x86_64 git-daemon-2.31.1-3.el8_7.x86_64.rpm a7abe095f0d7e6d95219e2647fe4e154e496a48d78ce68eaa5b6ac7c58055cdf
x86_64 git-core-2.31.1-3.el8_7.x86_64.rpm b4ea0571ebce710b04302a613209f2d8a9f2fa2f426e1ffe93cf928b23f998e2
x86_64 git-credential-libsecret-2.31.1-3.el8_7.x86_64.rpm f9dffce447b8fa9de1e1d03bc37485e90a96542682efd05a61d11cf79cb5753b
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.