PT-2025-39840 · Unknown · Bash-Git-Prompt

Cboltz

·

Published

2025-09-29

·

Updated

2025-12-30

·

CVE-2025-61659

CVSS v3.1

6.8

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions bash-git-prompt versions 2.6.1 through 2.7.1
Description The software uses the /tmp/git-index-private$$ file in a manner that results in a predictable filename.
Recommendations Update to a version later than 2.7.1.

Fix

Weakness Enumeration

Related Identifiers

CVE-2025-61659
OPENSUSE-SU-2025:15770-1
OPENSUSE-SU-2025:20130-1

Affected Products

Bash-Git-Prompt