CVE-2018-10888 PUBLISHED

A flaw was found in libgit2 before version 0.27.3. A missing check in git_delta_apply function in delta.c file, may lead to an out-of-bound read while reading a binary delta file. An attacker may use this flaw to cause a Denial of Service.

EPSS 0.41% · 61.0th percentile

Risk Scores

EPSS Score
0.41%
61.0th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSlibgit20.23.1-1, 0.24.1-2, 0
Ubuntu:18.04:LTSlibgit20.26.0+dfsg.1-1.1build1, 0.25.1+really0.24.6-1, 0.26.0+dfsg.1-1.1
Ubuntu:14.04:LTSlibgit20.19.0-2, 0

Timeline

References

Open in Interactive Console →