THREAT OPS › Threat News › [GHSA] GHSA-2vh6-hw4j-32ww (medium) — gix-packetline: reachable panic on empty side-band packet (pre-auth network DoS)
[GHSA] GHSA-2vh6-hw4j-32ww (medium) — gix-packetline: reachable panic on empty side-band packet (pre-auth network DoS)
GHSA-2vh6-hw4j-32ww Severity: medium CVE: None
gix-packetline: reachable panic on empty side-band packet (pre-auth network DoS)
### Summary `gix-packetline` panics when it receives a side-band packet line that contains only the band-id byte with an empty payload. A malicious Git server - or any remote a victim clones/fetches from - can abort the `gix` client process during a normal fetch. This i
Indicators of compromise
- eac50e1207e2549b23302c9faf595a420b9919fcsha1
- 1234567890123456789012345678901234567890sha1
Original source: https://github.com/advisories/GHSA-2vh6-hw4j-32ww