-
Bug
-
Resolution: Fixed
-
Highest
-
None
-
Severity 1 - Critical
There was an argument injection vulnerability in Sourcetree for Windows via Mercurial repository tag name that is going to be deleted. An attacker with permission to create a tag on a Mercurial repository linked in Sourcetree for Windows is able to exploit this issue to gain code execution on the system.
Affected versions:
- All versions of SourceTree for Windows before version 2.5.5.0
Fix:
- Upgrade SourceTree for Windows to version 2.5.5.0 or higher from https://www.sourcetreeapp.com/
Acknowledgements
Atlassian would like to credit Zhang Tianqi @ Tophant for reporting this issue to us.
For additional details see the full advisory.
- relates to
-
SECENG-1459 Failed to load
[SRCTREEWIN-8509] Argument injection via Mercurial tag names on Windows - CVE-2018-5226
Workflow | Original: JAC Bug Workflow v3 [ 3453950 ] | New: SRCTREE JAC Bug Workflow [ 3744722 ] |
Workflow | Original: SourceTree Bug Workflow [ 2653042 ] | New: JAC Bug Workflow v3 [ 3453950 ] |
Status | Original: Resolved [ 5 ] | New: Closed [ 6 ] |
Security | Original: Atlassian Staff [ 10750 ] |
Description |
Original:
There was an argument injection vulnerability in Sourcetree for Windows via Mercurial repository tag name that is going to be deleted. An attacker with permission to create a tag on a Mercurial repository linked in Sourcetree for Windows is able to exploit this issue to gain code execution on the system.
*Affected versions:* * All versions of SourceTree for Windows before version 2.5.4.0 *Fix:* * Upgrade SourceTree for Windows to version 2.5.4.0 or higher from https://www.sourcetreeapp.com/ *Acknowledgements* Atlassian would like to credit Zhang Tianqi @ Tophant for reporting this issue to us. For additional details see the [full advisory|https://confluence.atlassian.com/x/ERyUO]. |
New:
There was an argument injection vulnerability in Sourcetree for Windows via Mercurial repository tag name that is going to be deleted. An attacker with permission to create a tag on a Mercurial repository linked in Sourcetree for Windows is able to exploit this issue to gain code execution on the system.
*Affected versions:* * All versions of SourceTree for Windows before version 2.5.5.0 *Fix:* * Upgrade SourceTree for Windows to version 2.5.5.0 or higher from https://www.sourcetreeapp.com/ *Acknowledgements* Atlassian would like to credit Zhang Tianqi @ Tophant for reporting this issue to us. For additional details see the [full advisory|https://confluence.atlassian.com/x/ERyUO]. |
Fix Version/s | New: 2.5.5 [ 79790 ] | |
Fix Version/s | Original: 2.5.4 [ 78998 ] |
Remote Link | New: This issue links to "SECENG-1459 (Security JIRA (CYBER/J))" [ 362759 ] |
Remote Link | Original: This issue links to "https://softwareteams.atlassian.net/browse/SRCTREE-2720 (Web Link)" [ 362758 ] |
Remote Link | New: This issue links to "https://softwareteams.atlassian.net/browse/SRCTREE-2720 (Web Link)" [ 362758 ] |
Fix Version/s | New: 2.5.4 [ 78998 ] |
Description |
Original:
There was an argument injection vulnerability in Sourcetree for Windows via Mercurial repository tag name that is going to be deleted. An attacker with permission to create a tag on a Mercurial repository linked in Sourcetree for Windows is able to exploit this issue to gain code execution on the system.
*Affected versions:* * All versions of SourceTree for Windows before version 2.5.4.0 *Fix:* * Upgrade SourceTree for Windows to version 2.5.4.0 or higher from https://www.sourcetreeapp.com/ For additional details see the [full advisory|https://confluence.atlassian.com/x/ERyUO]. |
New:
There was an argument injection vulnerability in Sourcetree for Windows via Mercurial repository tag name that is going to be deleted. An attacker with permission to create a tag on a Mercurial repository linked in Sourcetree for Windows is able to exploit this issue to gain code execution on the system.
*Affected versions:* * All versions of SourceTree for Windows before version 2.5.4.0 *Fix:* * Upgrade SourceTree for Windows to version 2.5.4.0 or higher from https://www.sourcetreeapp.com/ *Acknowledgements* Atlassian would like to credit Zhang Tianqi @ Tophant for reporting this issue to us. For additional details see the [full advisory|https://confluence.atlassian.com/x/ERyUO]. |