CVE-2019-1353 - log back

CVE-2019-1353 edited at 10 Dec 2019 21:30:20
Description
- Git was unaware of NTFS Alternate Data Streams, allowing files inside the .git/ directory to be overwritten during a clone.
+ When running Git in the Windows Subsystem for Linux (also known as "WSL") while accessing a working directory on a regular Windows drive, none of the NTFS protections were active.
References
- https://github.com/git/git/commit/7c3745fc6185495d5765628b4dfe1bd2c25a2981
+ https://github.com/git/git/commit/9102f958ee5254b10c0be72672aa3305bf4f4704
https://lkml.org/lkml/2019/12/10/905
Notes
+ Only applicable to WSL
CVE-2019-1353 edited at 10 Dec 2019 21:24:05
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Remote
Type
- Unknown
+ Arbitrary code execution
Description
+ Git was unaware of NTFS Alternate Data Streams, allowing files inside the .git/ directory to be overwritten during a clone.
References
+ https://github.com/git/git/commit/7c3745fc6185495d5765628b4dfe1bd2c25a2981
+ https://lkml.org/lkml/2019/12/10/905
Notes
CVE-2019-1353 created at 10 Dec 2019 21:09:06