[Hallcsw] Update your git
Brad Sawatzky
brads at jlab.org
Fri Mar 25 12:22:14 EDT 2016
Just a heads-up for folks using git. A couple of security related bugs
were identified recently:
https://ma.ttias.be/remote-code-execution-git-versions-client-server-2-7-1-cve-2016-2324-cve-2016-2315/
These are critical bugs if you run a server that random people can push
to, but only moderate to low risk if you just do 'git pull'. (You would
have to be tricked into pulling a maliciously constructed repository.)
Anyway, all reasonable distros have already published patches so a
'yum update', 'apt-get update', ... should get you to a safe state.
Note that updating git on Macs and RHEL5/CENTOS5 will likely be
something you need to do manually.
-- Brad
--
Brad Sawatzky, PhD <brads at jlab.org> -<>- Jefferson Lab / Hall C / C111
Ph: 757-269-5947 -<>- Fax: 757-269-5235 -<>- Pager: brads-page at jlab.org
The most exciting phrase to hear in science, the one that heralds new
discoveries, is not "Eureka!" but "That's funny..." -- Isaac Asimov
More information about the Hallcsw
mailing list