gitolite before commit fa06a34 might allow local users to read arbitrary files in repositories via vectors related to the user umask when running gitolite setup.
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/149438/ManageEngine-SupportCenter-Plus-8.1.0-Cross-Site-Scripting.html | Not Applicable Third Party Advisory VDB Entry |
https://lists.fedoraproject.org/pipermail/package-announce/2014-January/125611.html | Third Party Advisory |
https://marc.info/?l=oss-security&m=138783069700756&w=2 | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: debian
Published: 2018-09-21T17:00:00
Updated: 2018-09-21T16:57:01
Reserved: 2013-12-23T00:00:00
Link: CVE-2013-7203
JSON object: View
NVD Information
Status : Analyzed
Published: 2018-09-21T17:29:01.373
Modified: 2018-11-19T15:08:24.970
Link: CVE-2013-7203
JSON object: View
Redhat Information
No data.
CWE