From a66e60edaa77feb4feaa829983c6cd504912281d Mon Sep 17 00:00:00 2001 From: kingname Date: Mon, 12 Jan 2015 13:35:01 +0800 Subject: [PATCH] Delete 20141219 Git 2.2.1 Released To Fix Critical Security Issue.md --- ...Released To Fix Critical Security Issue.md | 27 ------------------- 1 file changed, 27 deletions(-) delete mode 100644 sources/news/20141219 Git 2.2.1 Released To Fix Critical Security Issue.md diff --git a/sources/news/20141219 Git 2.2.1 Released To Fix Critical Security Issue.md b/sources/news/20141219 Git 2.2.1 Released To Fix Critical Security Issue.md deleted file mode 100644 index 8fbfa1f071..0000000000 --- a/sources/news/20141219 Git 2.2.1 Released To Fix Critical Security Issue.md +++ /dev/null @@ -1,27 +0,0 @@ -Git 2.2.1 Released To Fix Critical Security Issue -================================================================================ -![](http://www.phoronix.com/assets/categories/freesoftware.jpg) - -Translating by kingname - -Git 2.2.1 was released this afternoon to fix a critical security vulnerability in Git clients. Fortunately, the vulnerability doesn't plague Unix/Linux users but rather OS X and Windows. - -Today's Git vulnerability affects those using the Git client on case-insensitive file-systems. On case-insensitive platforms like Windows and OS X, committing to .Git/config could overwrite the user's .git/config and could lead to arbitrary code execution. Fortunately with most Phoronix readers out there running Linux, this isn't an issue thanks to case-sensitive file-systems. - -Besides the attack vector from case insensitive file-systems, Windows and OS X's HFS+ would map some strings back to .git too if certain characters are present, which could lead to overwriting the Git config file. Git 2.2.1 addresses these issues. - -More details via the [Git 2.2.1 release announcement][1] and [GitHub has additional details][2]. - --------------------------------------------------------------------------------- - -via: http://www.phoronix.com/scan.php?page=news_item&px=MTg2ODA - -作者:[Michael Larabel][a] -译者:[译者ID](https://github.com/译者ID) -校对:[校对者ID](https://github.com/校对者ID) - -本文由 [LCTT](https://github.com/LCTT/TranslateProject) 原创翻译,[Linux中国](http://linux.cn/) 荣誉推出 - -[a]:http://www.michaellarabel.com/ -[1]:http://article.gmane.org/gmane.linux.kernel/1853266 -[2]:https://github.com/blog/1938-git-client-vulnerability-announced