Atlassian,
Is SourceTree affeceted by CVE-2022-24826 "Git LFS vulnerability" ?
I questioned about this to Atlassian and got as below;
It is resolved by latest Git 2.36.0 and Git LFS v3.1.4 and in Sourcetree we have also updated and will be released with SourceTree 3.4.9.
And Bamboo for WIndows too?
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
There are some issues on JAC related "git lfs" vulnerability ....
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
It is resolved by latest Git 2.36.0 and Git LFS v3.1.4 and in Sourcetree we have also updated and will be released with SourceTree 3.4.9.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Vipin,
Thank you.
Will Atlassian also release Bamboo for WIndows for CVE-2022-24826 like BAM-21284 and BAM-21267?
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Both applications use the git that is installed on the operating system that they are being run on. You'll need to look at the version of git affected, not the applications.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.