CVE-2020-12279
27.04.2020, 17:15
An issue was discovered in libgit2 before 0.28.4 and 0.9x before 0.99.0. checkout.c mishandles equivalent filenames that exist because of NTFS short names. This may allow remote code execution when cloning a repository. This issue is similar to CVE-2019-1353.Enginsight
Vendor | Product | Version |
---|---|---|
libgit2 | libgit2 | 𝑥 < 0.28.4 |
debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References