Arbitrary Path Overwrite Vulnerability in Git by Git SCM
CVE-2019-1348
3.3LOW
What is CVE-2019-1348?
An issue in Git prior to version 2.24.1 exposes the --export-marks option via the fast-import in-stream command feature. This vulnerability can allow attackers to overwrite arbitrary paths in the file system, potentially compromising the integrity of data and system security. It is crucial for users of affected Git versions to upgrade to the recommended versions to mitigate such risks.
Affected Version(s)
Git Before 2.24.1, 2.23.1, 2.22.2, 2.21.1, 2.20.2, 2.19.3, 2.18.2, 2.17.3, 2.16.6, 2.15.4, 2.14.6