Newsletter
REAL HACKER NEWS
  • Home
  • REVIEWS
  • SECURITY
  • GAMING
  • SMARTPHONES
  • CAMERA
  • COMPUTERS
    • LAPTOP
  • APPLICATIONS
  • AUDIO
No Result
View All Result
  • Home
  • REVIEWS
  • SECURITY
  • GAMING
  • SMARTPHONES
  • CAMERA
  • COMPUTERS
    • LAPTOP
  • APPLICATIONS
  • AUDIO
No Result
View All Result
REAL HACKER NEWS
No Result
View All Result
Home APPLICATIONS

Git Users Urged to Update Software to Prevent Remote Code Execution Attacks

Real Hacker Staff by Real Hacker Staff
January 19, 2023
in APPLICATIONS
0
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter

Related articles

Apple Music Classical Now Available to Download

March 28, 2023

Microsoft Introduces GPT-4 AI-Powered Security Copilot Tool to Empower Defenders

March 28, 2023


Jan 18, 2023Ravie LakshmananDevOpsSec / Software program Safety

The maintainers of the Git supply code model management system have launched updates to remediate two essential vulnerabilities that might be exploited by a malicious actor to realize distant code execution.

The issues, tracked as CVE-2022-23521 and CVE-2022-41903, impacts the next variations of Git: v2.30.6, v2.31.5, v2.32.4, v2.33.5, v2.34.5, v2.35.5, v2.36.3, v2.37.4, v2.38.2, and v2.39.0.

Patched variations embody v2.30.7, v2.31.6, v2.32.5, v2.33.6, v2.34.6, v2.35.6, v2.36.4, v2.37.5, v2.38.3, and v2.39.1. X41 D-Sec safety researchers Markus Vervier and Eric Sesterhenn in addition to GitLab’s Joern Schneeweisz have been credited with reporting the bugs.

“Probably the most extreme concern found permits an attacker to set off a heap-based reminiscence corruption throughout clone or pull operations, which could lead to code execution,” the German cybersecurity firm stated of CVE-2022-23521.

CVE-2022-41903, additionally a essential vulnerability, is triggered throughout an archive operation, resulting in code execution by means of an integer overflow flaw that arises when formatting the commit logs.

“Moreover, an enormous variety of integer associated points was recognized which can result in denial-of-service conditions, out-of-bound reads or just badly dealt with nook instances on massive enter,” X41 D-Sec famous.

Whereas there aren’t any workarounds for CVE-2022-23521, Git is recommending that customers disable “git archive” in untrusted repositories as a mitigation for CVE-2022-41903 in situations the place updating to the newest model shouldn’t be an choice.

GitLab, in a coordinated advisory, stated it has launched variations 15.7.5, 15.6.6, and 15.5.9 for GitLab Neighborhood Version (CE) and Enterprise Version (EE) to handle the shortcomings, urging prospects to use the fixes with rapid impact.

Discovered this text fascinating? Observe us on Twitter  and LinkedIn to learn extra unique content material we submit.





Source link

Tags: AttackscodeexecutionGitpreventRemoteSoftwareupdateurgedUsers
Share76Tweet47

Related Posts

Apple Music Classical Now Available to Download

by Real Hacker Staff
March 28, 2023
0

The app is all about showcasing the more than 5 million classical music tracks available on Apple Music. “We love...

Microsoft Introduces GPT-4 AI-Powered Security Copilot Tool to Empower Defenders

by Real Hacker Staff
March 28, 2023
0

Mar 28, 2023Ravie LakshmananArtificial Intelligence / Cyber Threat Microsoft on Tuesday unveiled Security Copilot in preview, marking its continued push...

Here’s what’s new in iPadOS 16.4, watchOS 9.4, macOS Ventura 13.3, and tvOS 16.4

by Real Hacker Staff
March 28, 2023
0

After weeks of betas, Apple has now made its iPadOS 16.4, watchOS 9.4, macOS Ventura 13.3, and tvOS 16.4 updates...

Apple Pay Later is here, but whether you can use or not it is completely random…

Apple Pay Later is here, but whether you can use or not it is completely random…

by Real Hacker Staff
March 28, 2023
0

Apple has today announced that it will start rolling out Apple Pay Later randomly to users in the U.S. starting...

How to enable cellular Voice Isolation on iPhone with iOS 16.4

by Real Hacker Staff
March 28, 2023
0

With the release of iOS 16.4, Apple has brought the fantastic Voice Isolation feature from FaceTime to cellular calls on...

Load More
  • Trending
  • Comments
  • Latest

eSIMs Will Transform the Way You Think About Mobile Data and Security

March 7, 2023

XMOS Launches XVF3800 High-Performance Voice Processor for Enterprise and Consumer Voice Conferencing Platforms

March 7, 2023

Chinese Hackers Using Russo-Ukrainian War Decoys to Target APAC and European Entities

December 7, 2022

Sennheiser Starts Shipping EW-DX Digital Wireless Microphone Series

November 22, 2022

Hello world!

0
US Commodities Regulator Beefs Up Bitcoin Futures Review

US Commodities Regulator Beefs Up Bitcoin Futures Review

0
Bitcoin Hits 2018 Low as Concerns Mount on Regulation, Viability

Bitcoin Hits 2018 Low as Concerns Mount on Regulation, Viability

0
India: Bitcoin Prices Drop As Media Misinterprets Gov’s Regulation Speech

India: Bitcoin Prices Drop As Media Misinterprets Gov’s Regulation Speech

0
Apple Pay Later launches with a random invite system today

Apple Pay Later launches with a random invite system today

March 28, 2023
Italy’s ban on cultivated meat could set the industry back

Italy’s ban on cultivated meat could set the industry back

March 28, 2023
Murder conviction of Adnan Syed reinstated by appeals court panel | News

Murder conviction of Adnan Syed reinstated by appeals court panel | News

March 28, 2023
Mario Bath Bomb Makes Your Bath Water Look Like Pee

Mario Bath Bomb Makes Your Bath Water Look Like Pee

March 28, 2023

Recent News

Apple Pay Later launches with a random invite system today

Apple Pay Later launches with a random invite system today

March 28, 2023
Italy’s ban on cultivated meat could set the industry back

Italy’s ban on cultivated meat could set the industry back

March 28, 2023

Categories

  • APPLICATIONS
  • AUDIO
  • CAMERA
  • COMPUTERS
  • GAMING
  • LAPTOP
  • REVIEWS
  • SECURITY
  • SMARTPHONES
  • Uncategorized
REAL HACKER NEWS

We bring you the best news on Internet new gadgets hacking and technology from around the world

  • Contact
  • Cookie Privacy Policy
  • Terms and Conditions
  • Privacy Policy
  • Disclaimer
  • DMCA

© 2003 Real Hacker News

No Result
View All Result
  • Home
  • REVIEWS
  • SECURITY
  • GAMING
  • SMARTPHONES
  • CAMERA
  • COMPUTERS
    • LAPTOP
  • APPLICATIONS
  • AUDIO

© 2003 Real Hacker News

Go to mobile version