V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2016-10129
DEB
High

The Git Smart Protocol support in libgit2 before 0.24.6 and 0.25.x before 0.25.1 allows remote attackers to cause a denial of service (NULL…

CVSS
7.5
High
EPSS
0.04
p87
Published
2016-01-01
Updated
2016-01-01
Description

The Git Smart Protocol support in libgit2 before 0.24.6 and 0.25.x before 0.25.1 allows remote attackers to cause a denial of service (NULL pointer dereference) via an empty packet line.

Tags · CWE
Pre-auth
CWE-476
Affected products
CargoLibgit2Libgit2Libgit2Libgit2Libgit2Libgit2Libgit2Libgit2Libgit2Libgit2Libgit2Libgit2Libgit2Libgit2Libgit2Libgit2Libgit2Libgit2Libgit2
CVSS vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Timeline
2016-01-01
Published
2016-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: N
None (N)
Integrity Impact
I: N
None (N)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
0.036 · p87
Known exploited (KEV)
No
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
Affected products
ProductVendorStatus
cargoTracked
libgit2Tracked
libgit2Tracked
libgit2Tracked
libgit2Tracked
libgit2Tracked
libgit2Tracked
libgit2Tracked
libgit2Tracked
libgit2Tracked
libgit2Tracked
libgit2Tracked
libgit2Tracked
libgit2Tracked
libgit2Tracked
libgit2Tracked
libgit2Tracked
libgit2Tracked
libgit2Tracked
libgit2Tracked
Showing first 20 of 25
Source databases
DEB
CVE
UBU