Skip to main content

Vendor archive

dulwich_project CVEs

Beta · best-effort

3 CVEs tagged to vendor dulwich_project1 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2017-16228

Published Oct 29, 2017

Dulwich before 0.18.5, when an SSH subprocess is used, allows remote attackers to execute arbitrary commands via an ssh URL with an initial dash character in the hostname, a relat…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1