Happy Valentine's Day!
I've got a little something for you all right here https://github.com/git/git/security/advisories/GHSA-r87m-v37r-cwfh
💕 Patch your Gits 💕
Happy Valentine's Day!
I've got a little something for you all right here https://github.com/git/git/security/advisories/GHSA-r87m-v37r-cwfh
💕 Patch your Gits 💕
And while we're at it:
Roses are red
violets are blue
RCE is bad
We've got a patch for you ♥️
A.k.a. patch your GitLabs
@joern signal boost! Be careful out there! #git #vulnerability
@joern great bug!
@joern Beautiful, if the fixing patch would actually be a PoC exploit for said bug :D
@ljrk reminds me of
https://seclists.org/fulldisclosure/2013/Oct/att-272/whatsup.txt
section Example ;)
@joern Ooh, I like this!
@ljrk LOL yeah. IIRC the tests give away the exploit.