Skip to main content

Vendor/product archive

dulwich_project / dulwich CVEs

Beta · best-effort

3 CVEs tagged to dulwich_project / dulwich1 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2017-16228

Published Oct 29, 2017

Dulwich before 0.18.5, when an SSH subprocess is used, allows remote attackers to execute arbitrary commands via an ssh URL with an initial dash character in the hostname, a relat…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1