openSUSE: 2012:1460-1: important: cgit
Description
Specially-crafted commits can cause code to be executed on the clients due to improperly quoted arguments.
Patch
Patch Instructions: To install this openSUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - openSUSE 12.2: zypper in -t patch openSUSE-2012-764 To bring your system up-to-date, use "zypper patch".
Package List
- openSUSE 12.2 (i586 x86_64): cgit-0.9.0.2-14.4.1 cgit-debuginfo-0.9.0.2-14.4.1 cgit-debugsource-0.9.0.2-14.4.1
References
https://www.suse.com/security/cve/CVE-2012-4548.html https://bugzilla.novell.com/787074