CVE Database
/

CVE-2015-8969

Back to search

CVE-2015-8969

Published: Nov 3, 2016

Modified: Aug 6, 2024

PUBLISHED

Description

git-fastclone before 1.0.5 passes user modifiable strings directly to a shell command. An attacker can execute malicious commands by modifying the strings that are passed as arguments to "cd " and "git clone " commands in the library.

VendorProductVersions

n/a

git-fastclone ruby gem All versions before 1.0.5

affected
git-fastclone ruby gem All versions before 1.0.5

References

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now