Known vulnerabilities in git (Debian package)

Vendor: Debian
Software CPE: cpe:2.3:o:debian:git_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 26
Public exploits: 3
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting git (Debian package) git (Debian package) is affected by 26 known vulnerabilities: 10 high, 6 medium, 10 low Critical High Medium Low

Vulnerabilities (26)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU102870 - Improper Encoding or Escaping of Output
CVE-2024-50349
CWE-116 Low
No
No
1:2.39.5-0+deb12u2 16.01.2025 SB2025011640
SB2025011641
SB2025011643
and 21 more
#VU102869 - Improper Encoding or Escaping of Output
CVE-2024-52006
CWE-116 Low
No
No
1:2.39.5-0+deb12u2 16.01.2025 SB2025011640
SB2025011641
SB2025011643
and 21 more
#VU91288 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-32465
CWE-94 High
No
No
1:2.39.5-0+deb12u1 07.06.2024 SB2024060720
SB2024060721
SB2024060723
and 44 more
#VU91287 - UNIX Symbolic Link (Symlink) Following
CVE-2024-32021
CWE-61 Medium
No
No
1:2.39.5-0+deb12u1 07.06.2024 SB2024060720
SB2024060721
SB2024060723
and 44 more
#VU91286 - UNIX Hard Link
CVE-2024-32020
CWE-62 Medium
No
No
1:2.39.5-0+deb12u1 07.06.2024 SB2024060720
SB2024060721
SB2024060723
and 43 more
#VU89491 - Unrestricted Upload of File with Dangerous Type
CVE-2024-32002
CWE-434 High
Available
No
1:2.39.5-0+deb12u1 15.05.2024 SB2024051504
SB2024060720
SB2024060721
and 52 more
#VU89490 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-32004
CWE-94 High
No
No
1:2.39.5-0+deb12u1 15.05.2024 SB2024051503
SB2024060720
SB2024060721
and 51 more
#VU75486 - Improper input validation
CVE-2023-29007
CWE-20 Low
Available
No
1:2.39.5-0+deb12u1 25.04.2023 SB2023042553
SB2023042610
SB2023042629
and 48 more
#VU75485 - Insufficient Verification of Data Authenticity
CVE-2023-25815
CWE-345 Low
No
No
1:2.39.5-0+deb12u1 25.04.2023 SB2023042553
SB2023042610
SB2023042638
and 40 more
#VU75484 - Improper Link Resolution Before File Access ('Link Following')
CVE-2023-25652
CWE-59 Low
No
No
1:2.39.5-0+deb12u1 25.04.2023 SB2023042553
SB2023042610
SB2023042629
and 48 more
#VU72246 - Improper Link Resolution Before File Access ('Link Following')
CVE-2023-22490
CWE-59 Low
No
No
1:2.30.2-1+deb11u2 15.02.2023 SB2023021529
SB2023021528
SB2023021533
and 31 more
#VU72245 - Improper Link Resolution Before File Access ('Link Following')
CVE-2023-23946
CWE-59 Medium
No
No
1:2.30.2-1+deb11u2 15.02.2023 SB2023021529
SB2023021528
SB2023021533
and 28 more
#VU71239 - Integer overflow
CVE-2022-23521
CWE-190 High
No
No
1:2.30.2-1+deb11u1 17.01.2023 SB2023011739
SB2023011741
SB2023011804
and 52 more
#VU71238 - Heap-based Buffer Overflow
CVE-2022-41903
CWE-122 High
No
No
1:2.30.2-1+deb11u1 17.01.2023 SB2023011739
SB2023011741
SB2023011804
and 51 more
#VU68518 - Heap-based Buffer Overflow
CVE-2022-39260
CWE-122 High
No
No
1:2.30.2-1+deb11u1 19.10.2022 SB2022101995
SB2022101996
SB2022101997
and 23 more
#VU68517 - Improper input validation
CVE-2022-39253
CWE-20 Low
Available
No
1:2.30.2-1+deb11u1 19.10.2022 SB2022101995
SB2022101996
SB2022101997
and 41 more
#VU65287 - Permissions, Privileges, and Access Controls
CVE-2022-29187
CWE-264 Medium
No
No
1:2.30.2-1+deb11u1 13.07.2022 SB2022071347
SB2022071348
SB2022071350
and 30 more
#VU62258 - Untrusted Search Path
CVE-2022-24765
CWE-426 Low
No
No
1:2.30.2-1+deb11u1 12.04.2022 SB2022041262
SB2022041264
SB2022041265
and 44 more
#VU27258 - Insufficiently Protected Credentials
CVE-2020-5260
CWE-522 Medium
Available
No
1:2.11.0-3+deb9u6, 1:2.20.1-2+deb10u2 23.04.2020 SB2020042343
SB2020042344
SB2020042345
and 27 more
#VU27257 - Insufficiently Protected Credentials
CVE-2020-11008
CWE-522 Low
No
No
1:2.11.0-3+deb9u7, 1:2.20.1-2+deb10u3 23.04.2020 SB2020042343
SB2020042344
SB2020042345
and 18 more


Showing elements 1 - 20 out of 26