diff options
| author | Graham Christensen <graham@grahamc.com> | 2016-04-07 21:24:49 -0500 |
|---|---|---|
| committer | Graham Christensen <graham@grahamc.com> | 2016-04-07 21:24:49 -0500 |
| commit | f9099deb8ed18935b993b90c769af3f55bfcbb00 (patch) | |
| tree | 457efdf691d2ff90840718971905b8067332e281 /pkgs/development/python-modules/GitPython | |
| parent | 0db23cf75cdcb80f4d238b8487026e8d602c8a0f (diff) | |
mercurial: 3.7.1 -> 3.7.3 for multiple CVEs
CVE-2016-3068
Blake Burkhart discovered that Mercurial allows URLs for Git
subrepositories that could result in arbitrary code execution on
clone.
CVE-2016-3069
Blake Burkhart discovered that Mercurial allows arbitrary code
execution when converting Git repositories with specially
crafted names.
CVE-2016-3630
It was discovered that Mercurial does not properly perform bounds-
checking in its binary delta decoder, which may be exploitable for
remote code execution via clone, push or pull.
Diffstat (limited to 'pkgs/development/python-modules/GitPython')
0 files changed, 0 insertions, 0 deletions
