Search CVE reports


Toggle filters

1 – 10 of 1291 results


CVE-2024-52005

Medium priority
Needs evaluation

Git is a source code management tool. When cloning from a server (or fetching, or pushing), informational or error messages are transported from the remote Git process to the client via the so-called "sideband channel". These...

1 affected package

git

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
git Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-53263

Medium priority
Needs evaluation

Git LFS is a Git extension for versioning large files. When Git LFS requests credentials from Git for a remote host, it passes portions of the host's URL to the `git-credential(1)` command without checking for embedded line-ending...

1 affected package

git-lfs

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
git-lfs Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-52006

Medium priority

Some fixes available 3 of 6

Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-level operations and full access to internals. Git defines a line-based protocol that is used to exchange...

1 affected package

git

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
git Fixed Fixed Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-50349

Medium priority

Some fixes available 3 of 6

Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-level operations and full access to internals. When Git asks for credentials via a terminal prompt (i.e....

1 affected package

git

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
git Fixed Fixed Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-56138

Medium priority

Not in release

notion-go is a collection of libraries for supporting sign and verify OCI artifacts. Based on Notary Project specifications. This issue was identified during Quarkslab's audit of the timestamp feature. During the timestamp...

2 affected packages

golang-github-notaryproject-notation, golang-github-notaryproject-notation-go

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
golang-github-notaryproject-notation Not in release Not in release Not in release
golang-github-notaryproject-notation-go Not in release Not in release Not in release
Show less packages

CVE-2024-51491

Medium priority

Not in release

notion-go is a collection of libraries for supporting sign and verify OCI artifacts. Based on Notary Project specifications. The issue was identified during Quarkslab's security audit on the Certificate Revocation List (CRL) based...

2 affected packages

golang-github-notaryproject-notation, golang-github-notaryproject-notation-go

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
golang-github-notaryproject-notation Not in release Not in release Not in release
golang-github-notaryproject-notation-go Not in release Not in release Not in release
Show less packages

CVE-2024-13041

Negligible priority
Ignored

An issue was discovered in GitLab CE/EE affecting all versions starting from 16.4 prior to 17.5.5, starting from 17.6 prior to 17.6.3, and starting from 17.7 prior to 17.7.1. When a user is created via the SAML provider, the...

1 affected package

gitlab

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
gitlab Not in release Not in release Not in release Ignored
Show less packages

CVE-2024-6324

Negligible priority
Ignored

An issue was discovered in GitLab CE/EE affecting all versions starting from 15.7 prior to 17.5.5, starting from 17.6 prior to 17.6.3, and starting from 17.7 prior to 17.7.1. It was possible to trigger a DoS by creating cyclic...

1 affected package

gitlab

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
gitlab Not in release Not in release Not in release Ignored
Show less packages

CVE-2024-12431

Negligible priority
Ignored

An issue was discovered in GitLab CE/EE affecting all versions starting from 15.5 before 17.5.5, 17.6 before 17.6.3, and 17.7 before 17.7.1, in which unauthorized users could manipulate the status of issues in public projects.

1 affected package

gitlab

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
gitlab Not in release Not in release Not in release Ignored
Show less packages

CVE-2025-0194

Negligible priority
Ignored

An issue was discovered in GitLab CE/EE affecting all versions starting from 17.4 prior to 17.5.5, starting from 17.6 prior to 17.6.3, and starting from 17.7 prior to 17.7.1. Under certain conditions, access tokens may have been...

1 affected package

gitlab

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
gitlab Not in release Not in release Not in release Ignored
Show less packages