[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

251782

 
 

909

 
 

196543

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2-2020-1409 --- git

ID: oval:org.secpod.oval:def:1700319Date: (C)2020-04-21   (M)2023-12-20
Class: PATCHFamily: unix




With a crafted URL that contains a newline in it, the credential helper machinery can be fooled to give credential information for a wrong host. The attack has been made impossible by forbidding a newline character in any value passed via the credential protocol

Platform:
Amazon Linux 2
Product:
git
Reference:
ALAS2-2020-1409
CVE-2020-5260
CVE    1
CVE-2020-5260

© SecPod Technologies