Stack-based buffer overflow in the (1) diff_addremove and (2) diff_change functions in GIT prior to 1.5.6.4 might allow local users to execute arbitrary code via a PATH whose length is larger than the system's PATH_MAX when running GIT utilities such as git-diff or git-grep.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
git git 1.5.5.3 |
||
git git 1.5.5.4 |
||
git git 1.5.6.3 |
||
git git 1.5.6.1 |
||
git git 1.5.6.2 |