Soft Serve to samodzielnie hostowany serwer Git dla linii poleceń. Przed wersją 0.11.2 błąd autoryzacji w endpoincie usuwania blokad LFS pozwala każdemu uwierzytelnionemu użytkownikowi z dostępem do zapisu w repozytorium na usuwanie blokad innych użytkowników poprzez ustawienie flagi force. Podatna ścieżka kodu przetwarza usunięcia wymuszone przed pobraniem kontekstu użytkownika, całkowicie omijając walidację własności. Problem został naprawiony w wersji 0.11.2.
▸ Pokaż oryginał (EN)
Soft Serve is a self-hostable Git server for the command line. Prior to version 0.11.2, an authorization bypass in the LFS lock deletion endpoint allows any authenticated user with repository write access to delete locks owned by other users by setting the force flag. The vulnerable code path processes force deletions before retrieving user context, bypassing ownership validation entirely. This issue has been patched in version 0.11.2.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:LCharm Soft Serve
APPCharm< 0.11.2
Powiązane podatności
SSRF w Soft Serve — dostęp do wewnętrznych usług przez LFS endpoint
SSRF w Soft Serve — webhooks bez walidacji URL umożliwiają dostęp do sieci wewnętrznej
Soft Serve is a self-hostable Git server for the command line. From version 0.6.0 to before version 0.11.6, an...
Soft Serve is a self-hostable Git server for the command line. Versions 0.11.2 and below have a critical authe...
Soft Serve is a self-hostable Git server for the command line. Prior to version 0.6.2, a security vulnerabilit...