← Back to CVE List

CVE-2017-15298

Published: 2017-10-14T22:29Z
Last Modified: 2024-11-21T03:14Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Git through 2.14.2 mishandles layers of tree objects, which allows remote attackers to cause a denial of service (memory consumption) via a crafted repository, aka a Git bomb. This can also have an impact of disk consumption; however, an affected process typically would not survive its attempt to build the data structure in memory before writing to disk. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt