<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T14:21:35.297850+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/brew-git-annex-cve-2018-10857</id>
    <title>BREW-git-annex-CVE-2018-10857 — git-annex private data exfiltration to compromised remote</title>
    <updated>2026-10-02T14:21:35.309400+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Homebrew: git-annex</p>
<p># *git-annex* private data exfiltration to compromised remote</p>
<p>Some uses of git-annex were vulnerable to a private data exposure
and exfiltration attack. It could expose the content of files
located outside the *git-annex* repository, or content from a
private web server on localhost or the LAN.  Joey Hess discovered
this attack.</p>
<p>To perform this attack, the attacker needs to have control over one
of the remotes of the victim's *git-annex* repository. For example,
they may provide a public *git-annex* repository that the victim
clones. Or, equivalantly, the attacker could have read access to the
victim's *git-annex* repository or a repository it pushes to, and
some channel to get commits into it (e.g. pull requests).</p>
<p>These exploits are most likely to succeed when the victim is running
the `git-annex` assistant, or is periodically running `git annex
sync --content`.</p>
<p>To perform the attack the attacker runs `git-annex addurl --relaxed
file:///etc/passwd` and commits this to the repository in some out
of the way place.  After the victim's git repository receives that
change, `git-annex` follows the attacker-provided URL to the private
data, which it stores in the *git-annex* repository.  From there it
transfers the content to the remote *git-annex* repository that the
attacker has access to.</p>
<p>As well as `file:///` URLs, the attacker can use URLs to private web
servers.  The URL can also be one that the attacker controls, that
redirects to a URL that is accessible to the victim…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/brew-git-annex-cve-2018-10857"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2018-13344</id>
    <title>cnvd-2018-13344</title>
    <updated>2026-10-02T14:21:35.309527+00:00</updated>
    <content>cnvd-2018-13344</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2018-13344"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-64847</id>
    <title>EUVD-2026-64847</title>
    <updated>2026-10-02T14:21:35.309559+00:00</updated>
    <content>EUVD-2026-64847</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-64847"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2018-10857</id>
    <title>fkie_cve-2018-10857</title>
    <updated>2026-10-02T14:21:35.309572+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>git-annex is vulnerable to a private data exposure and exfiltration attack. It could expose the content of files located outside the git-annex repository, or content from a private web server on localhost or the LAN.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2018-10857"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-f7cm-x4r7-4852</id>
    <title>GHSA-f7cm-x4r7-4852</title>
    <updated>2026-10-02T14:21:35.309596+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>git-annex is vulnerable to a private data exposure and exfiltration attack. It could expose the content of files located outside the git-annex repository, or content from a private web server on localhost or the LAN.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-f7cm-x4r7-4852"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2018-10857</id>
    <title>gsd-2018-10857</title>
    <updated>2026-10-02T14:21:35.309610+00:00</updated>
    <content>gsd-2018-10857</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2018-10857"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/hsec-2023-0010</id>
    <title>HSEC-2023-0010 — git-annex private data exfiltration to compromised remote</title>
    <updated>2026-10-02T14:21:35.309621+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Hackage: git-annex</p>
<p># *git-annex* private data exfiltration to compromised remote</p>
<p>Some uses of git-annex were vulnerable to a private data exposure
and exfiltration attack. It could expose the content of files
located outside the *git-annex* repository, or content from a
private web server on localhost or the LAN.  Joey Hess discovered
this attack.</p>
<p>To perform this attack, the attacker needs to have control over one
of the remotes of the victim's *git-annex* repository. For example,
they may provide a public *git-annex* repository that the victim
clones. Or, equivalantly, the attacker could have read access to the
victim's *git-annex* repository or a repository it pushes to, and
some channel to get commits into it (e.g. pull requests).</p>
<p>These exploits are most likely to succeed when the victim is running
the `git-annex` assistant, or is periodically running `git annex
sync --content`.</p>
<p>To perform the attack the attacker runs `git-annex addurl --relaxed
file:///etc/passwd` and commits this to the repository in some out
of the way place.  After the victim's git repository receives that
change, `git-annex` follows the attacker-provided URL to the private
data, which it stores in the *git-annex* repository.  From there it
transfers the content to the remote *git-annex* repository that the
attacker has access to.</p>
<p>As well as `file:///` URLs, the attacker can use URLs to private web
servers.  The URL can also be one that the attacker controls, that
redirects to a URL that is accessible to the victim…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/hsec-2023-0010"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-10857</id>
    <title>UBUNTU-CVE-2018-10857</title>
    <updated>2026-10-02T14:21:35.309695+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: git-annex, Ubuntu:18.04:LTS: git-annex</p>
<p>git-annex is vulnerable to a private data exposure and exfiltration attack. It could expose the content of files located outside the git-annex repository, or content from a private web server on localhost or the LAN.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-10857"/>
  </entry>
</feed>
