Fedora 40: FEDORA-2025-50deb0acd5 Moderate Git-LFS Credential Leak Issue
Summary
Git Large File Storage (LFS) replaces large files such as audio samples,
videos, datasets, and graphics with text pointers inside Git, while
storing the file contents on a remote server.
Update Information:
Update to latest version Fix CVE-2024-53263
Change Log
* Wed Jan 15 2025 Elliott Sales de Andrade
References
[ 1 ] Bug #2338002 - CVE-2024-53263 git-lfs: Git LFS permits exfiltration of credentials via crafted HTTP URLs
https://bugzilla.redhat.com/show_bug.cgi?id=2338002
Update Instructions
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-50deb0acd5' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label