CVE-2024-47516
published 2025-03-26CVE-2024-47516: A vulnerability was found in Pagure. An argument injection in Git during retrieval of the repository history leads to remote code execution on the Pagure…
PriorityP260critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
0.84%
53.8th percentile
A vulnerability was found in Pagure. An argument injection in Git during retrieval of the repository history leads to remote code execution on the Pagure instance.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | pagure | < pagure 5.11.3+dfsg-1+deb11u1 (bullseye) | pagure 5.11.3+dfsg-1+deb11u1 (bullseye) |
| redhat | pagure | >= 0 < 5.11.3+dfsg-1+deb11u1 | 5.11.3+dfsg-1+deb11u1 |
| redhat | pagure | >= 0 < 5.14.1+dfsg-1 | 5.14.1+dfsg-1 |
| redhat | pagure | >= 0 < 5.11.3+dfsg-1ubuntu0.1 | 5.11.3+dfsg-1ubuntu0.1 |
| redhat | pagure | >= 0 < 5.11.3+dfsg-2.1ubuntu0.2 | 5.11.3+dfsg-2.1ubuntu0.2 |
| redhat | pagure | >= 0 < 5.8.1+dfsg-3ubuntu0.1~esm1 | 5.8.1+dfsg-3ubuntu0.1~esm1 |
Detection & IOCsextracted from sources · hover to see the quote
- →CVE-2024-47516 is an argument injection vulnerability in Pagure's Git integration, triggered during retrieval of repository history, leading to remote code execution. Detection should focus on anomalous or crafted Git arguments passed through Pagure's history retrieval endpoints. ↗
- →Monitor Pagure instances for unexpected process spawning from the Pagure web process, particularly git subprocesses with unusual argument patterns (e.g., arguments beginning with '--' or '-' that could be interpreted as git flags) originating from history/log retrieval requests. ↗
- →Pagure versions prior to 5.11.3+dfsg-1+deb11u1 (Debian bullseye), 5.14.1+dfsg-1 (Debian sid/trixie) are vulnerable. Identify unpatched Pagure deployments as a priority for detection and remediation. ↗
- ·The Debian security tracker classifies the scope of this vulnerability as 'local', which may indicate exploitation requires some level of authenticated or local access, despite the Ubuntu advisory describing the attacker as 'remote'. ↗
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
osv9.8CRITICAL
vendor_debian9.8CRITICAL
vendor_ubuntu8.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
pagure vulnerabilities
osv·2026-01-29·CVSS 8.1
CVE-2024-4981 [HIGH] pagure vulnerabilities
pagure vulnerabilities
Thomas Chauchefoin discovered that Pagure incorrectly handled symbolic
links in Git repositories. A remote attacker could possibly use this
issue to cause Pagure to expose files outside the intended repository
boundaries. (CVE-2024-4981)
Thomas Chauchefoin discovered that Pagure did not properly sanitize path
inputs. A remote attacker could possibly use this issue to read arbitrary
files. (CVE-2024-4982)
Thomas Chauchefoin discovered that Pagure incorrectly handled symbolic
links during repository archiving. A remote attacker could possibly use
this issue to disclose local files on the server. (CVE-2024-47515)
Thomas Chauchefoin discovered that Pagure incorrectly handled certain
inputs. A remote attacker could possibly use this issue to execute
arbitrary code on
GHSA
GHSA-cfhx-3wmq-q5rg: A vulnerability was found in Pagure
ghsa_unreviewed·2025-03-26
CVE-2024-47516 [CRITICAL] CWE-88 GHSA-cfhx-3wmq-q5rg: A vulnerability was found in Pagure
A vulnerability was found in Pagure. An argument injection in Git during retrieval of the repository history leads to remote code execution on the Pagure instance.
OSV
CVE-2024-47516: A vulnerability was found in Pagure
osv·2025-03-26·CVSS 9.8
CVE-2024-47516 [CRITICAL] CVE-2024-47516: A vulnerability was found in Pagure
A vulnerability was found in Pagure. An argument injection in Git during retrieval of the repository history leads to remote code execution on the Pagure instance.
Ubuntu
Pagure vulnerabilities
vendor_ubuntu·2026-01-29·CVSS 8.1
CVE-2024-4981 [HIGH] Pagure vulnerabilities
Title: Pagure vulnerabilities
Summary: Several security issues were fixed in Pagure.
Thomas Chauchefoin discovered that Pagure incorrectly handled symbolic
links in Git repositories. A remote attacker could possibly use this
issue to cause Pagure to expose files outside the intended repository
boundaries. (CVE-2024-4981)
Thomas Chauchefoin discovered that Pagure did not properly sanitize path
inputs. A remote attacker could possibly use this issue to read arbitrary
files. (CVE-2024-4982)
Thomas Chauchefoin discovered that Pagure incorrectly handled symbolic
links during repository archiving. A remote attacker could possibly use
this issue to disclose local files on the server. (CVE-2024-47515)
Thomas Chauchefoin discovered that Pagure incorrectly handled certain
inputs. A remote attac
Debian
CVE-2024-47516: pagure - A vulnerability was found in Pagure. An argument injection in Git during retriev...
vendor_debian·2024·CVSS 9.8
CVE-2024-47516 [CRITICAL] CVE-2024-47516: pagure - A vulnerability was found in Pagure. An argument injection in Git during retriev...
A vulnerability was found in Pagure. An argument injection in Git during retrieval of the repository history leads to remote code execution on the Pagure instance.
Scope: local
bullseye: resolved (fixed in 5.11.3+dfsg-1+deb11u1)
sid: resolved (fixed in 5.14.1+dfsg-1)
trixie: resolved (fixed in 5.14.1+dfsg-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-03-26
Published