A couple of vulnerabilities were reported against ruby-git, a Ruby interface to the Git revision control system, that could lead to a command injection and execution of an arbitrary ruby code by having a user to load a repository containing a specially crafted filename to the product.
Source: https://linuxsecurity.com/advisories/de ... 2022-25648
Debian 11: ruby-git Critical Command Injection Vulnerabilities DLA-4406-1
Who is online
Users browsing this forum: No registered users and 1 guest
