gpp_maybe
Security update for git
SUSE-SLE-Micro-5.5-2025-3037
This update for git fixes the following issues: Updated to 2.43.7 (jsc#PED-13447): - CVE-2025-27613: Fixed arbitrary writable file creation and truncation in Gitk (bsc#1245938) - CVE-2025-27614: Fixed arbitrary script execution via repo clonation in Gitk (bsc#1245939) - CVE-2025-46835: Fixed arbitrary writable file creation via untrusted repository clonation in Git GUI (bsc#1245942) - CVE-2025-48384: Fixed arbitrary writable file creation when cloning untrusted repositories with submodules using the --recursive flag (bsc#1245943) - CVE-2025-48385: Fixed arbitrary code execution due to protocol injection via fetching advertised bundle (bsc#1245946) Other fixes: - Drop git-credential-gnome-keyring package as it was dropped upstream, use git-credential-libsecret instead - git-add--interactive was removed upstream in favor of built in implementation, which was already the default in SLE.
-
Release DateSep 1 2025
-
ReferencesBugzilla: 1245938, 1245939, 1245942, 1245943, 1245946
CVEs: CVE-2025-27613, CVE-2025-27614, CVE-2025-46835, CVE-2025-48384, CVE-2025-48385 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Micro 5.5 ppc64le
-
Packages
SUSE Linux Enterprise Micro 5.5 s390x
-
Packages
SUSE Linux Enterprise Micro 5.5 aarch64
-
Packages
SUSE Linux Enterprise Micro 5.5 x86_64
-
Packages