elastic / ecs

Elastic Common Schema
https://www.elastic.co/what-is/ecs
Apache License 2.0
987 stars 410 forks source link

Fix Untrusted search path under some conditions on Windows allows arbitrary code execution #2320

Closed imhunterand closed 3 months ago

imhunterand commented 4 months ago

Although GitPython often avoids executing programs found in an untrusted search path since 3.1.33, two situations remain where this still occurs. Either can allow arbitrary code execution under some circumstances.

cla-checker-service[bot] commented 4 months ago

❌ Author of the following commits did not sign a Contributor Agreement: f0e96affe6a83d8f19637d602b677f9b327ceddd

Please, read and sign the above mentioned agreement if you want to contribute to this project

mjwolf commented 3 months ago

Hi @imhunterand, thanks for the contribution, but the same change has already been merged with #2313, so this PR is no longer needed