summaryrefslogtreecommitdiff
path: root/pkgs/development/python-modules/GitPython
diff options
context:
space:
mode:
authorGraham Christensen <graham@grahamc.com>2016-04-07 21:24:49 -0500
committerGraham Christensen <graham@grahamc.com>2016-04-07 21:24:49 -0500
commitf9099deb8ed18935b993b90c769af3f55bfcbb00 (patch)
tree457efdf691d2ff90840718971905b8067332e281 /pkgs/development/python-modules/GitPython
parent0db23cf75cdcb80f4d238b8487026e8d602c8a0f (diff)
mercurial: 3.7.1 -> 3.7.3 for multiple CVEs
CVE-2016-3068 Blake Burkhart discovered that Mercurial allows URLs for Git subrepositories that could result in arbitrary code execution on clone. CVE-2016-3069 Blake Burkhart discovered that Mercurial allows arbitrary code execution when converting Git repositories with specially crafted names. CVE-2016-3630 It was discovered that Mercurial does not properly perform bounds- checking in its binary delta decoder, which may be exploitable for remote code execution via clone, push or pull.
Diffstat (limited to 'pkgs/development/python-modules/GitPython')
0 files changed, 0 insertions, 0 deletions