If you have questions or concerns regarding this advisory, please raise them via. We support Sourcetree through the Atlassian Community. If you didn't receive an email for this advisory and you wish to receive such emails in the future, go to and subscribe to alerts emails. Upgrade to Sourcetree for macOS version 3.0.0, or Sourcetree for Windows version 3.0.0 or higher. For a full description of the latest version of Sourcetree, see the release notes. You can download the latest version of Sourcetree from the Sourcetree website. We recommend you upgrade to the latest version. Released Sourcetree for Windows version 3.0.0 that contains fixes for these issues, and can be downloaded from.Released Sourcetree for macOS version 3.0.0 that contains fixes for these issues, and can be downloaded from. Git comes with built-in GUI tools (git-gui, gitk), but there are several third-party tools for users looking for a platform-specific experience.We have taken the following steps to address these issues: You can track this issue at SRCTREEWIN-9077Ĭredit for finding this vulnerability goes to Terry Zhang at Tophant. Versions of Sourcetree for Windows starting with version 0.5.1.0 before version 3.0.0 are affected by this vulnerability. Versions of Sourcetree for macOS starting with version 1.0b2 before version 3.0.0 are affected by this vulnerability. An attacker with permission to commit to a Mercurial repository linked in Sourcetree for macOS or Windows is able to exploit this issue to gain code execution on the system. Sourcetree for macOS and Windows before version 3.0.0 were vulnerable to CVE-2018-13396 and CVE-2018-13397 respectively. This is our assessment and you should evaluate its applicability to your own IT environment. We rate the severity level of this vulnerability as critical, according to the scale published in our Atlassian severity levels. Please upgrade your Sourcetree installations immediately to fix this vulnerability. Customers who have downloaded and installed Sourcetree for macOS before version 3.0.0 or Sourcetree for Windows before version 3.0.0 are affected. source tree Gratuit Télécharger logiciels à UpdateStar - SourceTree, un client Mac pour les systèmes de contrôle de version Git et Mercurial.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |