What can I do to protect all my users from vulnerability to CVE-2014-9390 ?
Already suggested the users to update their git clients, what else can I do on the server-side ?
And I noticed that repos hosted on github
"cannot contain any of the malicious trees that trigger the vulnerability because we now verify and block these trees on push. We have also completed an automated scan of all existing content on <a href="http://github.com" rel="nofollow noopener noreferrer">github.com</a> to look for malicious content that might have been pushed to our site before this vulnerability was discovered. This work is an extension of the data-quality checks we have always performed on repositories pushed to our servers to protect our users against malformed or malicious Git data."
https://github.com/blog/1938-git-client-vulnerability-announced