CVE-2023-49568
EUVD-2023-325112.01.2024, 11:15
A denial of service (DoS) vulnerability was discovered in go-git versions prior to v5.11. This vulnerability allows an attacker to perform denial of service attacks by providing specially crafted responses from a Git server which triggers resource exhaustion in go-git clients. Applications using only the in-memory filesystem supported by go-git are not affected by this vulnerability. This is a go-git implementation issue and does not affect the upstream git cli.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| go-git_project | go-git | 4.0.0 ≤ 𝑥 < 5.11.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration