CVE-2018-20683
10.01.2019, 01:29
commands/rsync in Gitolite before 3.6.11, if .gitolite.rc enables rsync, mishandles the rsync command line, which allows attackers to have a "bad" impact by triggering use of an option other than -v, -n, -q, or -P.Enginsight
| Vendor | Product | Version |
|---|---|---|
| gitolite | gitolite | 𝑥 < 3.6.11 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| gitolite |
| ||||||||||||||||||||||||||||||
| gitolite3 |
|
Common Weakness Enumeration
References