GitHub: Git for Windows' uninstaller vulnerable to DLL hijacking when run under the SYSTEM user account.
{
"cna_assigner": "GitHub_M",
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/24xxx/CVE-2022-24767.json"
}"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-24767.json"
[
{
"digest": {
"line_hashes": [
"307315568570565290400836979395308618613",
"298714389846335905396019056159347169586",
"55678797436201821172282436323803886",
"290392974962811113306509779247062882496",
"65032762360999213712941052417892200137",
"82745878228339233985618152041513602134",
"308878660438581778848149169963603132823",
"111965913297617904986565507416937682155"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "compat/mingw.c"
},
"signature_type": "Line",
"id": "CVE-2022-24767-1b9d34a3",
"source": "https://github.com/git-for-windows/git/commit/518ccba2352ce721cabbbf2933869c3c3313d1c3",
"deprecated": false
},
{
"digest": {
"function_hash": "158044263876186630617805200909545738573",
"length": 1355.0
},
"signature_version": "v1",
"target": {
"file": "compat/mingw.c",
"function": "is_path_owned_by_current_sid"
},
"signature_type": "Function",
"id": "CVE-2022-24767-d4d90d69",
"source": "https://github.com/git-for-windows/git/commit/518ccba2352ce721cabbbf2933869c3c3313d1c3",
"deprecated": false
}
]