CVE-2023-49568
EUVD-2023-325112.01.2024, 11:15
A denial of service (DoS) vulnerability was discovered in go-git versions prior to v5.11. This vulnerability allows an attacker to perform denial of service attacks by providing specially crafted responses from a Git server which triggers resource exhaustion in go-git clients. Applications using only the in-memory filesystem supported by go-git are not affected by this vulnerability. This is a go-git implementation issue and does not affect the upstream git cli.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| go-git_project | go-git | 4.0.0 ≤ 𝑥 < 5.11.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Amazon Linux Releases
Amazon Package | |||||||
|---|---|---|---|---|---|---|---|
| amazon-ssm-agent |
| ||||||
| amazon-ssm-agent-debuginfo |
| ||||||
| amazon-ssm-agent-debugsource |
|
Azure Linux Releases
Common Weakness Enumeration