Description
Git Credential Manager (GCM) is a secure Git credential helper. Prior to 2.5.0, the Debian package does not set root ownership on installed files. This allows user 1001 on a multi-user system can replace binary and gain other users' privileges. This vulnerability is fixed in 2.5.0.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-30287 | Git Credential Manager (GCM) is a secure Git credential helper. Prior to 2.5.0, the Debian package does not set root ownership on installed files. This allows user 1001 on a multi-user system can replace binary and gain other users' privileges. This vulnerability is fixed in 2.5.0. |
References
History
No history.
Subscriptions
No data.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-02T02:13:39.117Z
Reserved: 2024-04-12T19:41:51.168Z
Link: CVE-2024-32478
Updated: 2024-08-02T02:13:39.117Z
Status : Deferred
Published: 2024-04-19T15:15:50.783
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-32478
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD