RHSA-2023:2866
High
Red Hat Security Advisory: git-lfs security and bug fix update
Exploit probability
Not scored
Published
September 30, 2024
Required by
Not available
Last source change
August 20, 2026
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
Open Source Vulnerabilities
RHSA-2023:2866
View original source
Red Hat Security Advisory: git-lfs security and bug fix update
05 / REFERENCES
Further evidence
- https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/8/html/8.8_release_notes/index
- https://access.redhat.com/errata/RHSA-2023:2866
- https://access.redhat.com/security/cve/CVE-2022-2880
- https://access.redhat.com/security/cve/CVE-2022-41715
- https://access.redhat.com/security/cve/CVE-2022-41717
- https://access.redhat.com/security/updates/classification/#moderate
- https://bugzilla.redhat.com/show_bug.cgi?id=2132868
- https://bugzilla.redhat.com/show_bug.cgi?id=2132872
- https://bugzilla.redhat.com/show_bug.cgi?id=2139382
- https://bugzilla.redhat.com/show_bug.cgi?id=2161274
- https://github.com/golang/go/issues/54663
- https://github.com/golang/go/issues/55949
- https://go.dev/cl/455635
- https://go.dev/cl/455717
- https://go.dev/issue/56350
- https://groups.google.com/g/golang-announce/c/L_3rmdT0BMU/m/yZDrXjIiBQAJ
- https://groups.google.com/g/golang-announce/c/xtuG5faxtaU?pli=1
- https://nvd.nist.gov/vuln/detail/CVE-2022-2880
- https://nvd.nist.gov/vuln/detail/CVE-2022-41715
- https://nvd.nist.gov/vuln/detail/CVE-2022-41717
- https://pkg.go.dev/vuln/GO-2022-1144
- https://security.access.redhat.com/data/csaf/v2/advisories/2023/rhsa-2023_2866.json
- https://www.cve.org/CVERecord?id=CVE-2022-2880
- https://www.cve.org/CVERecord?id=CVE-2022-41715
- https://www.cve.org/CVERecord?id=CVE-2022-41717