Vulnerability GHSA-rrjw-j4m2-mf34

Medium Risk
MEDIUM RISK
CVSS Score: 4.1
Score Range: 4.0–6.9
Medium severity vulnerabilities (CVSS 4.0–6.9). Important issues that meaningfully reduce security confidence.
3 years ago
September 25, 2023 at 08:21 PM UTC
gix-transport code execution vulnerability
0.25.4 - 0.36.0
0.25.4 - 0.36.0

Summary

gix-transport code execution vulnerability

Details

The gix-transport crate prior to the patched version 0.36.1 would allow attackers to use malicious ssh clone URLs to pass arbitrary arguments to the ssh program, leading to arbitrary code execution.

PoC: gix clone 'ssh://-oProxyCommand=open$IFS-aCalculator/foo'

This will launch a calculator on OSX.

See https://secure.phabricator.com/T12961 for more details on similar vulnerabilities in git.

Thanks for vin01 for disclosing this issue.

Impacted packages

Timeline

Published
3 years ago
September 25, 2023 at 08:21 PM UTC
Fixed (0.36.1)
3 years ago
September 25, 2023 at 06:29 AM UTC
Last Modified
1 year ago
July 28, 2025 at 04:41 PM UTC