CVE-2014-9462 PUBLISHED

The _validaterepo function in sshpeer in Mercurial before 3.2.4 allows remote attackers to execute arbitrary commands via a crafted repository name in a clone command.

EPSS 1.29% · 79.5th percentile

Risk Scores

EPSS Score
1.29%
79.5th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSmercurial0, 2.6.3-1, 2.7.2-1

Timeline

References

Open in Interactive Console →