File _patchinfo of Package patchinfo.40374
<patchinfo incident="40374">
<issue tracker="cve" id="2025-27613"/>
<issue tracker="cve" id="2025-46835"/>
<issue tracker="cve" id="2025-48384"/>
<issue tracker="bnc" id="1245942">VUL-0: CVE-2025-46835: git: untrusted repository cloning can lead to arbitrary writable file creation in Git GUI</issue>
<issue tracker="bnc" id="1245938">VUL-0: CVE-2025-27613: git: arbitrary writable file creation and truncation in Gitk</issue>
<issue tracker="bnc" id="1245943">VUL-0: CVE-2025-48384: git: script may be unintentionally executed after checkout due to CRLF transforming</issue>
<packager>ateixeira</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for git</summary>
<description>This update for git fixes the following issues:
- CVE-2025-27613: Fixed arbitrary writable file creation and truncation in Gitk (bsc#1245938)
- CVE-2025-46835: Fixed arbitrary writable file creation when cloning untrusted repository
in Git GUI (bsc#1245942)
- CVE-2025-48384: Fixed arbitrary writable file creation when cloning untrusted repositories with
submodules using the --recursive flag (bsc#1245943)
</description>
</patchinfo>