Vulnerability Description
webcheckout in myrepos through 1.20171231 does not sanitize URLs that are passed to git clone, allowing a malicious website operator or a MitM attacker to take advantage of it for arbitrary code execution, as demonstrated by an "ext::sh -c" attack or an option injection attack.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Myrepos Project | Myrepos | <= 1.20171231 |
Related Weaknesses (CWE)
References
- https://bugs.debian.org/840014ExploitPatchThird Party Advisory
- https://bugs.debian.org/840014ExploitPatchThird Party Advisory
FAQ
What is CVE-2018-7032?
CVE-2018-7032 is a vulnerability with a CVSS score of 7.5 (HIGH). webcheckout in myrepos through 1.20171231 does not sanitize URLs that are passed to git clone, allowing a malicious website operator or a MitM attacker to take advantage of it for arbitrary code execu...
How severe is CVE-2018-7032?
CVE-2018-7032 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2018-7032?
Check the references section above for vendor advisories and patch information. Affected products include: Myrepos Project Myrepos.