summaryrefslogtreecommitdiff
path: root/doc/bugs/git_security_fix.mdwn
diff options
context:
space:
mode:
Diffstat (limited to 'doc/bugs/git_security_fix.mdwn')
-rw-r--r--doc/bugs/git_security_fix.mdwn20
1 files changed, 20 insertions, 0 deletions
diff --git a/doc/bugs/git_security_fix.mdwn b/doc/bugs/git_security_fix.mdwn
new file mode 100644
index 000000000..43b3f505f
--- /dev/null
+++ b/doc/bugs/git_security_fix.mdwn
@@ -0,0 +1,20 @@
+git had some remotely exploitable security holes announced recently
+(CVE-2016-2324, CVE-2016-2315)
+
+git-annex builds that bundle git need to be updated.
+
+status of autobuilds:
+
+* Linux is fixed (all builds)
+* OSX is fixed
+* Windows does not bundle git
+* Android is fixed (git build is untested)
+
+status of released builds:
+
+* Linux is fixed (all builds)
+* OSX is fixed (yosemite only; old builds vulnerable so removed)
+* Windows does not bundle git
+* Android is fixed (git build is untested)
+
+[[done]] --[[Joey]]