CVE-2016-3630
13.04.2016, 16:59
The binary delta decoder in Mercurial before 3.7.3 allows remote attackers to execute arbitrary code via a (1) clone, (2) push, or (3) pull command, related to (a) a list sizing rounding error and (b) short records.Enginsight
| Vendor | Product | Version |
|---|---|---|
| opensuse | leap | 42.1 |
| mercurial | mercurial | 𝑥 ≤ 3.7.2 |
| debian | debian_linux | 7.0 |
| debian | debian_linux | 8.0 |
| opensuse | opensuse | 13.2 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References