CVE-2016-1901 REJECTED

Integer overflow in the authenticate_post function in CGit before 0.12 allows remote attackers to have unspecified impact via a large value in the Content-Length HTTP header, which triggers a buffer overflow.

EPSS 4.37% · 88.9th percentile

Risk Scores

EPSS Score
4.37%
88.9th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTScgit0, 0.11.2.git2.3.2-1

Timeline

References

Open in Interactive Console →