[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

[SECURITY] [DLA-1459-1] cgit security update



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Package        : cgit
Version        : 0.10.2.git2.0.1-3+deb8u2
CVE ID         : CVE-2018-14912 
Debian Bug     : #905382

It was discovered that there was a directory traversal vulnerability in
cgit, a web frontend for Git repositories.

For Debian 8 "Jessie", this issue has been fixed in cgit version
0.10.2.git2.0.1-3+deb8u2.

We recommend that you upgrade your cgit packages.


Regards,

- -- 
      ,''`.
     : :'  :     Chris Lamb
     `. `'`      lamby@debian.org / chris-lamb.co.uk
       `-

-----BEGIN PGP SIGNATURE-----
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=ERRz
-----END PGP SIGNATURE-----


Reply to: