In ng_pkt in transports/smart_pkt.c in libgit2 before 0.26.6 and 0.27.x before 0.27.4, a remote attacker can send a crafted smart-protocol "ng" packet that lacks a '\0' byte to trigger an out-of-bounds read that leads to DoS.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade libgit2Upgrade libgit2-0.27Upgrade libgit2-1.0Upgrade libgit2-1.1 | Aug 22, 2024 | Aug 18, 2018 |
| Debian | — | Upgrade libgit2 | Feb 19, 2019 | Aug 17, 2018 |
| Suse | — | Upgrade libgit2-26Upgrade libgit2-26-32bitUpgrade libgit2-develUpgrade libgit2-24 | Aug 25, 2018 | Aug 17, 2018 |
| Ubuntu | — | Upgrade libgit2-dev (Ubuntu Pro)Upgrade libgit2-fixturesUpgrade libgit2-24 (Ubuntu Pro)Upgrade libgit2-1.7No solution existsUpgrade libgit2-1.9Upgrade libgit2-1.1 (Ubuntu Pro)Upgrade libgit2-28 (Ubuntu Pro)Upgrade libgit2-26 (Ubuntu Pro)Upgrade libgit2-0 (Ubuntu Pro)Upgrade libgit2-fixtures (Ubuntu Pro)Upgrade libgit2-dev | Jun 26, 2025 | Aug 18, 2018 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub