CVE-2024-22038 - CVE House
Back to Database
Status published Medium CVE-2024-22038

DoS attacks, information leaks etc. with crafted Git repositories in obs-scm-bridge

Vulnerability Description

Various problems in obs-scm-bridge allows attackers that create specially crafted git repositories to leak information of cause denial of service.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-22038

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • Matthias Gerstner of SUSE

Affected Vendor

Affected Software

openSUSE Factory
Vulnerable Versions:
0

Timeline

Official Publish: November 28th, 2024
Last Modified: November 28th, 2024
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:H/A:H

Weaknesses (CWE)