Name | CVE-2009-2108 |
Description | git-daemon in git 1.4.4.5 through 1.6.3 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a request containing extra unrecognized arguments. |
Source | CVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) |
References | DSA-1841-1, DSA-1841-2 |
Debian Bugs | 532935 |
The information below is based on the following data on fixed versions.
Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
---|---|---|---|---|---|---|
git-core | source | etch | 1:1.4.4.4-4+etch4 | DSA-1841-2 | ||
git-core | source | lenny | 1:1.5.6.5-3+lenny3 | DSA-1841-2 | ||
git-core | source | (unstable) | 1:1.6.3.3-1 | medium | 532935 |
http://git.kernel.org/?p=git/git.git;a=commitdiff;h=73bb33a9