#VU68517 Input validation error in Git - CVE-2022-39253
Published: October 19, 2022 / Updated: May 29, 2023
Git
Git
Description
The vulnerability allows a remote attacker to bypass certain security restrictions.
The vulnerability exists due to the way Git handles hardlinks when performing a local clone. A remote attacker can trick the victim into clocking a malicious repository and create or copy hardlinks to critical files on the system, which can result in sensitive information exposure.