[Hallcsw] Update your git

Brad Sawatzky brads at jlab.org
Fri Mar 25 12:22:14 EDT 2016


Just a heads-up for folks using git.  A couple of security related bugs
were identified recently:
  https://ma.ttias.be/remote-code-execution-git-versions-client-server-2-7-1-cve-2016-2324-cve-2016-2315/

These are critical bugs if you run a server that random people can push
to, but only moderate to low risk if you just do 'git pull'.  (You would
have to be tricked into pulling a maliciously constructed repository.)

Anyway, all reasonable distros have already published patches so a
'yum update', 'apt-get update', ... should get you to a safe state.

Note that updating git on Macs and RHEL5/CENTOS5 will likely be
something you need to do manually.

-- Brad

-- 
Brad Sawatzky, PhD <brads at jlab.org>  -<>-  Jefferson Lab / Hall C / C111
Ph: 757-269-5947  -<>-  Fax: 757-269-5235  -<>- Pager: brads-page at jlab.org
The most exciting phrase to hear in science, the one that heralds new
  discoveries, is not "Eureka!" but "That's funny..."   -- Isaac Asimov


More information about the Hallcsw mailing list