[ALSA-2023:0611] Important: git security update
Type:
security
Severity:
important
Release date:
2023-02-07
Description:
Git is a distributed revision control system with a decentralized architecture. As opposed to centralized version control systems with a client-server model, Git ensures that each working copy of a Git repository is an exact copy with complete revision history. This not only allows the user to work on and contribute to projects without the need to have permission to push the changes to their official repositories, but also makes it possible for the user to work with no network connection. Security Fix(es): * git: gitattributes parsing integer overflow (CVE-2022-23521) * git: Heap overflow in `git archive`, `git log --format` leading to RCE (CVE-2022-41903) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 git-credential-libsecret-2.31.1-3.el9_1.aarch64.rpm 0d4bda118ea0b3f790ff98b033ac1c152f70f70e85d96dd1d79aee4784ab478b
aarch64 git-2.31.1-3.el9_1.aarch64.rpm 3dbff98044d54be2dbaf65d5406c2643f8eca5659c116929ddf6f1885f98f94e
aarch64 git-core-2.31.1-3.el9_1.aarch64.rpm a4399d8b7f96c0b100a87667c8ac3d69be3282d329dac0b5409ac1637b91e3cd
aarch64 git-subtree-2.31.1-3.el9_1.aarch64.rpm c59d4b02022aaaf0630a602dbaa015b11ffa56aea0b5342ab664b1a8e13ed7ef
aarch64 git-daemon-2.31.1-3.el9_1.aarch64.rpm ca57c5eb3731ea8f46f4b254acdd28c7ed80dc7f6c2978b991b509f9af001bea
noarch gitweb-2.31.1-3.el9_1.noarch.rpm 0144c7a0031331fc2005e2dcba435f383ede2326425ca610305d67af21c3fdae
noarch perl-Git-2.31.1-3.el9_1.noarch.rpm 02f67f177a8b7b68253f1a14b5ff83e1aeda91810ce2854e6fe9296bb90d4f2a
noarch git-email-2.31.1-3.el9_1.noarch.rpm 15342999f25d473595061ccbaac115c900412edd5d487f2942ea848eafe7453e
noarch git-all-2.31.1-3.el9_1.noarch.rpm 1d8420694c41b43364dda7c452660014fd9c569e41c36336b6771c41dd586477
noarch git-core-doc-2.31.1-3.el9_1.noarch.rpm 596a127aedfcb5246b203f64577f643ae5bfdf71a6ca0cf17e08aef5ba567dcb
noarch git-gui-2.31.1-3.el9_1.noarch.rpm 7df98a9ba52a92c739e22cf618703d0d02d9ed5fbf5bf71eef68ba7e6a8ac213
noarch gitk-2.31.1-3.el9_1.noarch.rpm 9766f7949e4c866a285c863ad738c39ae4c27c1564a37e99d40faf2de042de90
noarch git-instaweb-2.31.1-3.el9_1.noarch.rpm 98e5682d625dcd29a2c589ea6c3baf17f04fc64946acaa6ce5f9acb6b38a5250
noarch perl-Git-SVN-2.31.1-3.el9_1.noarch.rpm dcc7789f454ba62248fa75a95eb332badc751de25c031b89226d7092d7304870
noarch git-svn-2.31.1-3.el9_1.noarch.rpm f1d0778ffb02312fb2ed05cce0146953c6027d67f3627a8a5bda53dfbb7f23e1
ppc64le git-2.31.1-3.el9_1.ppc64le.rpm 432e355250cb37fb4c3c10b4d8093a1475fd9d3073d614646eba8838c49bafcd
ppc64le git-daemon-2.31.1-3.el9_1.ppc64le.rpm 8ec72ea2a8311c1d310377f147af5ee5cd2c97427c8c81b6baab1fbc75be993a
ppc64le git-credential-libsecret-2.31.1-3.el9_1.ppc64le.rpm a76b55100cf86f27a2d66d2f797c1542321645235a52fb8f74cd8ab1ebcfd9c2
ppc64le git-subtree-2.31.1-3.el9_1.ppc64le.rpm b102bfb5d0be83f853f25a04534c0fda7a9833c305feee57db93a44ce08c06bd
ppc64le git-core-2.31.1-3.el9_1.ppc64le.rpm db322a82e0063b437b75b00028a39433976b527c8ecd3eed8e57053a77ffe5aa
s390x git-core-2.31.1-3.el9_1.s390x.rpm 1b5767e73c33b9c7db4c26c6601ff129b959a7aa13e51a6b08571a6afa83c542
s390x git-2.31.1-3.el9_1.s390x.rpm 24236337fd49b0a17631600a97150d1e25811644732db11efcb63a287aa0b0ef
s390x git-subtree-2.31.1-3.el9_1.s390x.rpm 2831514a132cf1eadef90efa8d2410404e7c5899f9628a1c4e7c4cbdeec4dede
s390x git-daemon-2.31.1-3.el9_1.s390x.rpm c968e456e6ed95a0433195ea57154f2502db72fc7156617e59fe0d885b06633a
s390x git-credential-libsecret-2.31.1-3.el9_1.s390x.rpm d98cf1ecd294c805b2aaa0687521e3d52c41d52709e1defecacb4d30ac15d972
x86_64 git-subtree-2.31.1-3.el9_1.x86_64.rpm 399224579662339ecf2d34de285eca7abbc5cc6f0b9ce63b50f22959dd57c3e0
x86_64 git-core-2.31.1-3.el9_1.x86_64.rpm 477db3301bde72db96b8c776173847a62ddeb9cde24440896515aa3db848baa7
x86_64 git-2.31.1-3.el9_1.x86_64.rpm 8b34b1cbd39a76a9d9d49d44dadf77e1519103796d5deed7474e2b4bcbd911d8
x86_64 git-daemon-2.31.1-3.el9_1.x86_64.rpm 97bbb3df531fe658b8b70761f95ae71cea7f89935c07d83f88d693c653165a25
x86_64 git-credential-libsecret-2.31.1-3.el9_1.x86_64.rpm d0bd8ba6812bce677cb3e7fdb6a61ae43366556fa9ebf4e9d8c46aaafca796e5
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.