Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

CVE-2010-2542

Published: 11 August 2010

Stack-based buffer overflow in the is_git_directory function in setup.c in Git before 1.7.2.1 allows local users to gain privileges via a long gitdir: field in a .git file in a working copy.

Notes

AuthorNote
kees
git from hardy and earlier is not what was "git-core".
This is a non-issue due to stack-protector.

Priority

Medium

Status

Package Release Status
git
Launchpad, Ubuntu, Debian
dapper Not vulnerable
(not the same software)
hardy Not vulnerable
(not the same software)
jaunty Does not exist

karmic Does not exist

lucid Does not exist

upstream
Released (1.7.2)
This vulnerability is mitigated in part by the use of gcc's stack protector in Ubuntu.
git-core
Launchpad, Ubuntu, Debian
dapper Not vulnerable

hardy Not vulnerable

jaunty Ignored
(end of life)
karmic Ignored
(end of life)
lucid Ignored
(end of life)
upstream Not vulnerable