CVE-2024-25817: Eza.rock Eza
High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.
Buffer Overflow vulnerability in eza before version 0.18.2, allows local attackers to execute arbitrary code via the .git/HEAD, .git/refs, and .git/objects components.
Affected products
- Eza.rock Eza: before 0.18.2 (fixed in 0.18.2)
Published 2024-03-06. Last modified 2026-06-17.